Vulnerabilities > CVE-2007-0887 - NULL Pointer Dereference vulnerability in Gecad Technologies Axigen Mail Server 1.2.6/2.0.0B1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
axigen 1.2.6 through 2.0.0b1 does not properly parse login credentials, which allows remote attackers to cause a denial of service (NULL dereference and application crash) via a base64-encoded "*\x00" sequence on the imap port (143/tcp).
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Common Weakness Enumeration (CWE)
Exploit-Db
description | Axigen <= 2.0.0b1 Remote Denial of Service Exploit (2). CVE-2007-0887. Dos exploit for linux platform |
file | exploits/linux/dos/3290.c |
id | EDB-ID:3290 |
last seen | 2016-01-31 |
modified | 2007-02-08 |
platform | linux |
port | |
published | 2007-02-08 |
reporter | mu-b |
source | https://www.exploit-db.com/download/3290/ |
title | Axigen <= 2.0.0b1 - Remote Denial of Service Exploit 2 |
type | dos |
Nessus
NASL family | Gain a shell remotely |
NASL id | AXIGEN_IMAP_AUTH_DOS.NASL |
description | The remote host is running AXIGEN Mail Server, a messaging system for Linux and BSD. The POP3 server component of AXIGEN Mail Server contains a format string vulnerability because it calls syslog() when logtypeis set to |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 24321 |
published | 2007-02-09 |
reporter | This script is Copyright (C) 2007-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/24321 |
title | AXIGEN Mail Server < 2.0.0 Multiple Remote Vulnerabilities |
code |
|
References
- http://marc.info/?l=full-disclosure&m=117094708423302&w=2
- http://marc.info/?l=full-disclosure&m=117094708423302&w=2
- http://osvdb.org/33165
- http://osvdb.org/33165
- http://secunia.com/advisories/24073
- http://secunia.com/advisories/24073
- http://www.securityfocus.com/bid/22473
- http://www.securityfocus.com/bid/22473
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32345
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32345
- https://www.exploit-db.com/exploits/3290
- https://www.exploit-db.com/exploits/3290