← Back

CVE-2007-2795

nvd nist
Published: Jan 27, 2009Modified: Apr 23, 2026

JSON object

Loading...
9.0
Vector
AV:N/AC:L/Au:S/C:C/I:C/A:C
Exploitability: 8.0 / Impact: 10.0
Source: NVD

Description

Multiple buffer overflows in Ipswitch IMail before 2006.21 allow remote attackers or authenticated users to execute arbitrary code via (1) the authentication feature in IMailsec.dll, which triggers heap corruption in the IMail Server, or (2) a long SUBSCRIBE IMAP command, which triggers a stack-based buffer overflow in the IMAP Daemon.

Affected (2)

Products: Ipswitch: Imail
1 product
Imail
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Ipswitch
Up to 2006.2
Version 2006.1

References (6)

Timeline

No history available yet.