10
CVE-2006-6605
- EPSS 5.84%
- Veröffentlicht 19.12.2006 19:28:00
- Zuletzt bearbeitet 16.06.2026 22:33:27
- Quelle PSIRT-CNA@flexerasoftware.com
- CVE-Watchlists
- Unerledigt
Stack-based buffer overflow in the POP service in MailEnable Standard 1.98 and earlier; Professional 1.84, and 2.35 and earlier; and Enterprise 1.41, and 2.35 and earlier before ME-10026 allows remote attackers to execute arbitrary code via a long argument to the PASS command.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mailenable ≫ Mailenable Enterprise Version <= 2.35
Mailenable ≫ Mailenable Enterprise Version1.41
Mailenable ≫ Mailenable Professional Version <= 2.35
Mailenable ≫ Mailenable Professional Version1.84
Mailenable ≫ Mailenable Standard Version <= 1.98
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 5.84% | 0.922 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 10 | 10 | 10 |
AV:N/AC:L/Au:N/C:C/I:C/A:C
|
http://www.mailenable.com/hotfix/
http://secunia.com/advisories/23127
http://secunia.com/secunia_research/2006-75/advisory/
http://securityreason.com/securityalert/2053
http://securitytracker.com/id?1017395
http://www.securityfocus.com/archive/1/454713/100/0/threaded
http://www.securityfocus.com/bid/21645
http://www.vupen.com/english/advisories/2006/5052