Vulnerabilities > Novell > Netmail

DATE CVE VULNERABILITY TITLE RISK
2007-12-10 CVE-2007-6302 Buffer Errors vulnerability in Novell Netmail 3.5.2
Multiple heap-based buffer overflows in avirus.exe in Novell NetMail 3.5.2 before Messaging Architects M+NetMail 3.52f (aka 3.5.2F) allows remote attackers to execute arbitrary code via unspecified ASCII integers used as memory allocation arguments, aka "ZDI-CAN-162."
network
novell CWE-119
6.8
2007-05-11 CVE-2007-2616 Stack Buffer Overflow vulnerability in Novell Netmail NMDMC
Stack-based buffer overflow in the SSL version of the NMDMC.EXE service in Novell NetMail 3.52e FTF2 and probably earlier allows remote attackers to execute arbitrary code via a crafted request.
network
low complexity
novell
critical
10.0
2007-03-08 CVE-2007-1350 Buffer Overflow vulnerability in Novell Netmail 3.5.2
Stack-based buffer overflow in webadmin.exe in Novell NetMail 3.5.2 allows remote attackers to execute arbitrary code via a long username during HTTP Basic authentication.
network
novell
6.8
2006-12-27 CVE-2006-6762 Denial of Service vulnerability in Novell Netmail 3.5.2
The IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to cause a denial of service via an APPEND command with a single "(" (parenthesis) in the argument.
network
low complexity
novell
4.0
2006-12-27 CVE-2006-6761 Buffer Overflow vulnerability in Novell Netmail 3.5.2
Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to execute arbitrary code via a long argument to the SUBSCRIBE command.
network
low complexity
novell
6.5
2006-12-27 CVE-2006-6425 Buffer Overflow vulnerability in Novell Netmail IMAP APPEND
Stack-based buffer overflow in the IMAP daemon (IMAPD) in Novell NetMail before 3.52e FTF2 allows remote authenticated users to execute arbitrary code via unspecified vectors involving the APPEND command.
network
low complexity
novell
critical
9.0
2006-12-27 CVE-2006-6424 Heap Overflow vulnerability in Novell Netmail IMAP Verb Literal
Multiple buffer overflows in Novell NetMail before 3.52e FTF2 allow remote attackers to execute arbitrary code (1) by appending literals to certain IMAP verbs when specifying command continuation requests to IMAPD, resulting in a heap overflow; and (2) via crafted arguments to the STOR command to the Network Messaging Application Protocol (NMAP) daemon, resulting in a stack overflow.
network
low complexity
novell
critical
9.0
2005-12-31 CVE-2005-1976 Unspecified vulnerability in Novell Netmail 3.5.2
Novell NetMail 3.5.2a, 3.5.2b, and 3.5.2c, when running on Linux, sets the owner and group ID to 500 for certain files, which could allow users or groups with that ID to execute arbitrary code or cause a denial of service by modifying those files.
local
low complexity
novell
1.7
2005-11-18 CVE-2005-3314 Buffer Errors vulnerability in Novell Netmail 3.5.2
Stack-based buffer overflow in the IMAP daemon in Novell Netmail 3.5.2 allows remote attackers to execute arbitrary code via "long verb arguments."
network
low complexity
novell CWE-119
7.5
2005-10-20 CVE-2005-2469 Remote Buffer Overflow vulnerability in Novell Netmail 3.5.2
Stack-based buffer overflow in the NMAP Agent for Novell NetMail 3.52C and possibly earlier versions allows local users to execute arbitrary code via a long user name in the USER command.
local
low complexity
novell
4.6