Vulnerabilities > CVE-2005-1256 - Multiple vulnerability in Ipswitch Imail, Imail Server and Ipswitch Collaboration Suite

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
ipswitch
critical

Summary

Stack-based buffer overflow in the IMAP daemon (IMAPD32.EXE) in IMail 8.13 in Ipswitch Collaboration Suite (ICS), and other versions before IMail Server 8.2 Hotfix 2, allows remote authenticated users to execute arbitrary code via a STATUS command with a long mailbox name.

Vulnerable Configurations

Part Description Count
Application
Ipswitch
3

Saint

  • bid13727
    descriptionIMail IMAP STATUS buffer overflow
    idmail_imap_imail
    osvdb16806
    titleimail_imap_status
    typeremote
  • bid13727
    descriptionIMail IMAP LOGIN special character vulnerability
    idmail_imap_imail
    osvdb16804
    titleimail_imap_login_specialchar
    typeremote