Vulnerabilities > CVE-2000-0239 - Buffer Overflow vulnerability in Atrium Software products
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
Buffer overflow in the MERCUR WebView WebMail server allows remote attackers to cause a denial of service via a long mail_user parameter in the GET request.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |
Exploit-Db
description | Atrium Software Mercur WebView WebMail-Client 1.0 Buffer Overflow. CVE-2000-0239. Dos exploit for windows platform |
id | EDB-ID:19810 |
last seen | 2016-02-02 |
modified | 2000-03-16 |
published | 2000-03-16 |
reporter | Ussr Labs |
source | https://www.exploit-db.com/download/19810/ |
title | Atrium Software Mercur WebView WebMail-Client 1.0 - Buffer Overflow |
Nessus
NASL family | CGI abuses |
NASL id | MERCURE_WEBVIEW.NASL |
description | The remote WebView service does not do proper bounds checking when processing the following request : GET /mmain.html&mail_user=aaa[...]aaa A remote attacker could exploit this to crash the service, or potentially execute arbitrary code. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 10346 |
published | 2000-03-15 |
reporter | This script is Copyright (C) 2000-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/10346 |
title | MERCUR WebView WebMail Server mail_user Parameter DoS |
code |
|