|
CVE Reference: CVE-2008-7182
|
|
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.
|
|
Original Page at CVE MITRE:
CVE-2008-7182
|
|
Description:
Buffer overflow in the IMAP service in NetWin Surgemail 3.9e, and possibly other versions before 3.9g2, allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a long first argument to the APPEND command, a different vector than CVE-2008-1497 and CVE-2008-1498. NOTE: due to lack of details, it is not certain whether this is the same issue as CVE-2008-2859.
|
|
CVE Status:
Candidate
|
|
References:
MISC http://www.netwinsite.com/surgemail/help/updates.htm
MILW0RM http://www.milw0rm.com/exploits/5968
BUGTRAQ http://www.securityfocus.com/archive/1/496482
BID 30000
|
|
|
Return to the previous page.
|