Vulnerabilities > Atrium Software

DATE CVE VULNERABILITY TITLE RISK
2007-03-21 CVE-2007-1579 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Atrium Software Mercur Imapd and Mercur Messaging 2005
Stack-based buffer overflow in Atrium MERCUR IMAPD allows remote attackers to have an unknown impact via a certain SUBSCRIBE command.
network
low complexity
atrium-software CWE-119
critical
10.0
2007-03-21 CVE-2007-1578 Buffer Overflow vulnerability in Atrium Software Mercur Imapd 5.00.14
Multiple integer signedness errors in the NTLM implementation in Atrium MERCUR IMAPD (mcrimap4.exe) 5.00.14, with SP4, allow remote attackers to execute arbitrary code via a long NTLMSSP argument that triggers a stack-based buffer overflow.
network
low complexity
atrium-software
critical
10.0
2007-02-23 CVE-2006-7041 Remote Denial Of Service vulnerability in Atrium Software Mercur Messaging 2005 5.0Sp3
The SMTP service in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (infinite loop) via a message in which neither the originator nor recipient address is known.
network
low complexity
atrium-software
7.8
2007-02-23 CVE-2006-7040 Remote Denial Of Service vulnerability in Atrium Software Mercur Messaging 2005 5.0Sp3
Unspecified vulnerability in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (crash) via a TOP command to the POP3 service.
network
low complexity
atrium-software
7.8
2007-02-23 CVE-2006-7039 Remote Denial Of Service vulnerability in Atrium Software Mercur Messaging 2005 5.0Sp3
The IMAP4 service in MERCUR Messaging 2005 before Service Pack 4 allows remote attackers to cause a denial of service (crash) via a message with a long subject field.
network
low complexity
microsoft atrium-software
5.0
2007-02-23 CVE-2006-7038 Remote Denial Of Service vulnerability in Atrium Software Mercur Messaging 2005 5.0Sp3
Multiple buffer overflows in MERCUR Messaging 2005 before Service Pack 4 allow remote attackers to cause a denial of service (crash) via (1) "long command lines at port 32000" and (2) certain name service queries that are not properly handled by the SMTP service.
network
low complexity
atrium-software
7.8
2003-12-31 CVE-2003-1322 Remote Buffer Overflow vulnerability in Atrium Software Mercur Mailserver IMAP
Multiple stack-based buffer overflows in Atrium MERCUR IMAPD in MERCUR Mailserver before 4.2.15.0 allow remote attackers to execute arbitrary code via a long (1) EXAMINE, (2) DELETE, (3) SUBSCRIBE, (4) RENAME, (5) UNSUBSCRIBE, (6) LIST, (7) LSUB, (8) STATUS, (9) LOGIN, (10) CREATE, or (11) SELECT command.
network
low complexity
atrium-software
critical
10.0
2003-12-31 CVE-2003-1177 Remote Buffer Overflow vulnerability in Atrium Software Mercur Mailserver IMAP AUTH
Buffer overflow in the base64 decoder in MERCUR Mailserver 4.2 before SP3a allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long (1) AUTH command to the POP3 server or (2) AUTHENTICATE command to the IMAP server.
network
low complexity
atrium-software
7.5
2002-10-04 CVE-2002-1073 Buffer Overflow vulnerability in MERCUR Mailserver Control-Service
Buffer overflow in the control service for MERCUR Mailserver 4.2 allows remote attackers to execute arbitrary code via a long password.
network
low complexity
atrium-software
7.5
2001-05-03 CVE-2001-0280 Unspecified vulnerability in Atrium Software Mercur
Buffer overflow in MERCUR SMTP server 3.30 allows remote attackers to execute arbitrary commands via a long EXPN command.
network
low complexity
atrium-software
critical
10.0