Vulnerabilities > Ipswitch > Ipswitch Collaboration Suite > Medium

DATE CVE VULNERABILITY TITLE RISK
2007-07-24 CVE-2007-3959 Remote Denial of Service vulnerability in Ipswitch Imserver and Ipswitch Collaboration Suite
The IM Server (aka IMserve or IMserver) 2.0.5.30 and probably earlier in Ipswitch Instant Messaging before 2.07 in Ipswitch Collaboration Suite (ICS) allows remote attackers to cause a denial of service (daemon crash) via certain data to TCP port 5179 that overwrites a destructor, as reachable by the (1) DoAttachVideoSender, (2) DoAttachVideoReceiver, (3) DoAttachAudioSender, and (4) DoAttachAudioReceiver functions.
network
low complexity
ipswitch
5.0
2007-07-21 CVE-2007-3925 Buffer Errors vulnerability in Ipswitch Imail Server and Ipswitch Collaboration Suite
Multiple buffer overflows in the IMAP service (imapd32.exe) in Ipswitch IMail Server 2006 before 2006.21 allow remote authenticated users to execute arbitrary code via the (1) Search or (2) Search Charset command.
network
low complexity
ipswitch CWE-119
6.5
2006-07-13 CVE-2006-3552 Remote Security vulnerability in Ipswitch products
Premium Anti-Spam in Ipswitch IMail Secure Server 2006 and Collaboration Suite 2006 Premium, when using a certain .dat file in the StarEngine /data directory from 20060630 or earlier, does not properly receive and implement bullet signature updates, which allows context-dependent attackers to use the server for spam transmission.
network
low complexity
ipswitch
6.4
2005-12-31 CVE-2005-3526 Remote Buffer Overflow vulnerability in Ipswitch IMail Server / Collaboration Suite IMAP FETCH
Buffer overflow in the IMAP daemon in Ipswitch Collaboration Suite 2006.02 and earlier allows remote authenticated users to execute arbitrary code via a long FETCH command.
network
low complexity
ipswitch
6.5
2005-12-07 CVE-2005-2923 Improper Input Validation vulnerability in Ipswitch Imail Server and Ipswitch Collaboration Suite
The IMAP server in IMail Server 8.20 in Ipswitch Collaboration Suite (ICS) before 2.02 allows remote attackers to cause a denial of service (crash) via a long argument to the LIST command, which causes IMail Server to reference invalid memory.
network
low complexity
ipswitch CWE-20
4.0
2005-05-25 CVE-2005-1249 Multiple vulnerability in Ipswitch IMail Server
The IMAP daemon (IMAPD32.EXE) in Ipswitch Collaboration Suite (ICS) allows remote attackers to cause a denial of service (CPU consumption) via an LSUB command with a large number of null characters, which causes an infinite loop.
network
low complexity
ipswitch
5.0