10

CVE-2007-1578

Exploit
Multiple integer signedness errors in the NTLM implementation in Atrium MERCUR IMAPD (mcrimap4.exe) 5.00.14, with SP4, allow remote attackers to execute arbitrary code via a long NTLMSSP argument that triggers a stack-based buffer overflow.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Atrium SoftwareMercur Imapd Version5.00.14 Updatesp4
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 16.31% 0.965
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://archives.neohapsis.com/archives/fulldisclosure/2007-03/0280.html
Exploit
http://secunia.com/advisories/24596
http://securitytracker.com/id?1017798
Vendor Advisory
Exploit
http://www.digit-labs.org/files/exploits/mercur-v1.pl
Exploit
http://www.osvdb.org/33545
http://www.securityfocus.com/bid/23058
Vendor Advisory
Exploit
http://www.vupen.com/english/advisories/2007/1053
https://exchange.xforce.ibmcloud.com/vulnerabilities/33120
https://www.exploit-db.com/exploits/3527