9

CVE-2006-6424

Multiple buffer overflows in Novell NetMail before 3.52e FTF2 allow remote attackers to execute arbitrary code (1) by appending literals to certain IMAP verbs when specifying command continuation requests to IMAPD, resulting in a heap overflow; and (2) via crafted arguments to the STOR command to the Network Messaging Application Protocol (NMAP) daemon, resulting in a stack overflow.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NovellNetmail Updatee-ftfl Version <= 3.5.2
NovellNetmail Version3.0.1
NovellNetmail Version3.0.3a Updatea
NovellNetmail Version3.0.3a Updateb
NovellNetmail Version3.1
NovellNetmail Version3.1 Updatef
NovellNetmail Version3.5
NovellNetmail Version3.10
NovellNetmail Version3.10 Updatea
NovellNetmail Version3.10 Updateb
NovellNetmail Version3.10 Updatec
NovellNetmail Version3.10 Updated
NovellNetmail Version3.10 Updatee
NovellNetmail Version3.10 Updatef
NovellNetmail Version3.10 Updateg
NovellNetmail Version3.10 Updateh
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 63.43% 0.983
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9 8 10
AV:N/AC:L/Au:S/C:C/I:C/A:C