7.8

CVE-2006-7038

Multiple buffer overflows in MERCUR Messaging 2005 before Service Pack 4 allow remote attackers to cause a denial of service (crash) via (1) "long command lines at port 32000" and (2) certain name service queries that are not properly handled by the SMTP service.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Atrium SoftwareMercur Messaging 2005 Version5.0_sp3 Editionenterprise
Atrium SoftwareMercur Messaging 2005 Version5.0_sp3 Editionlite
Atrium SoftwareMercur Messaging 2005 Version5.0_sp3 Editionstandard
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.88% 0.767
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 10 6.9
AV:N/AC:L/Au:N/C:N/I:N/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/20432
Patch
Vendor Advisory
http://www.atrium-software.com/download/McrReadMe_EN.html
http://www.securityfocus.com/bid/18462
Patch
http://www.vupen.com/english/advisories/2006/2354
https://exchange.xforce.ibmcloud.com/vulnerabilities/27231