Vulnerabilities > CVE-2005-1255 - Multiple vulnerability in Ipswitch Imail, Imail Server and Ipswitch Collaboration Suite

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
ipswitch
critical
exploit available

Summary

Multiple stack-based buffer overflows in the IMAP server in IMail 8.12 and 8.13 in Ipswitch Collaboration Suite (ICS), and other versions before IMail Server 8.2 Hotfix 2, allow remote attackers to execute arbitrary code via a LOGIN command with (1) a long username argument or (2) a long username argument that begins with a special character.

Exploit-Db

  • descriptionIPSwitch IMAP Server LOGON Remote Stack Overflow. CVE-2005-1255. Remote exploit for windows platform
    idEDB-ID:1035
    last seen2016-01-31
    modified2005-06-07
    published2005-06-07
    reporternolimit
    sourcehttps://www.exploit-db.com/download/1035/
    titleIPSwitch IMAP Server LOGON Remote Stack Overflow
  • descriptionIPSwitch IMail Server. CVE-2005-1255. Remote exploit for linux platform
    idEDB-ID:1124
    last seen2016-01-31
    modified2005-08-01
    published2005-08-01
    reporterkingcope
    sourcehttps://www.exploit-db.com/download/1124/
    titleIPSwitch IMail Server <= 8.15 IMAPD Remote Root Exploit

Saint

  • bid13727
    descriptionIMail IMAP STATUS buffer overflow
    idmail_imap_imail
    osvdb16806
    titleimail_imap_status
    typeremote
  • bid13727
    descriptionIMail IMAP LOGIN special character vulnerability
    idmail_imap_imail
    osvdb16804
    titleimail_imap_login_specialchar
    typeremote