Vulnerabilities > Pmail

DATE CVE VULNERABILITY TITLE RISK
2017-05-21 CVE-2017-9046 Improper Input Validation vulnerability in Pmail Pegasus 4.72
winpm-32.exe in Pegasus Mail (aka Pmail) v4.72 build 572 allows code execution via a crafted ssgp.dll file that must be installed locally.
local
pmail CWE-20
4.4
2009-11-02 CVE-2009-3838 Buffer Errors vulnerability in Pmail Pegasus Mail 4.41/4.51
Stack-based buffer overflow in Pegasus Mail (PMail) 4.41 and possibly 4.51 allows remote POP3 servers to cause a denial of service (application crash) or possibly execute arbitrary code via a long error message.
network
pmail CWE-119
critical
9.3
2007-08-21 CVE-2007-4440 Buffer Errors vulnerability in Pmail Mercury Mail Transport System 4.51
Stack-based buffer overflow in the MercuryS SMTP server in Mercury Mail Transport System, possibly 4.51 and earlier, allows remote attackers to execute arbitrary code via a long AUTH CRAM-MD5 string.
network
low complexity
pmail CWE-119
7.5
2007-03-10 CVE-2007-1373 Remote Security vulnerability in Mercury Mail Transport System
Stack-based buffer overflow in Mercury/32 (aka Mercury Mail Transport System) 4.01b and earlier allows remote attackers to execute arbitrary code via a long LOGIN command.
network
low complexity
pmail
critical
10.0
2004-12-31 CVE-2004-2513 Remote Security vulnerability in Pmail Pegasus 4.01
Buffer overflow in the IMAP service of Mercury (Pegasus) Mail 4.01 allows remote attackers to execute arbitrary code via a long SELECT command.
network
low complexity
pmail
critical
10.0
1998-04-01 CVE-1999-0098 Buffer overflow in SMTP HELO command in Sendmail allows a remote attacker to hide activities.
network
low complexity
apple pmail seattlelab
critical
10.0