Show filters
126 Total Results
Displaying 101-110 of 126
Sort by:
Attacker Value
Unknown
CVE-2006-0447
Disclosure Date: January 27, 2006 (last updated February 22, 2025)
Multiple buffer overflows in E-Post Mail Server 4.10 and SPA-PRO Mail @Solomon 4.00 allow remote attackers to execute arbitrary code via a long username to the (1) AUTH PLAIN or (2) AUTH LOGIN SMTP commands, which is not properly handled by (a) EPSTRS.EXE or (b) SPA-RS.EXE; (3) a long username in the APOP POP3 command, which is not properly handled by (c) EPSTPOP4S.EXE or (d) SPA-POP3S.EXE; (4) a long IMAP DELETE command, which is not properly handled by (e) EPSTIMAP4S.EXE or (f) SPA-IMAP4S.EXE.
0
Attacker Value
Unknown
CVE-2005-4324
Disclosure Date: December 17, 2005 (last updated February 22, 2025)
Hitachi Groupmax Mail SMTP 06-50 through 06-52-/A and 07-00 through 07-20 allows remote attackers to cause a denial of service (service stop) via an e-mail message with an "invalid format."
0
Attacker Value
Unknown
CVE-2005-2857
Disclosure Date: September 08, 2005 (last updated February 22, 2025)
Free SMTP Server 2.2 allows remote attackers to use the server as an open mail relay (spam proxy).
0
Attacker Value
Unknown
CVE-2005-2409
Disclosure Date: August 01, 2005 (last updated February 22, 2025)
Format string vulnerability in util.c in nbsmtp 0.99 and earlier, while running in debug mode, allows remote attackers to execute arbitrary code via format string specifiers that are not properly handled in a syslog call.
0
Attacker Value
Unknown
CVE-2005-2387
Disclosure Date: July 27, 2005 (last updated February 22, 2025)
Multiple stack-based buffer overflows in GoodTech SMTP server 5.16 allow remote attackers to execute arbitrary code via (1) a RCPT TO command with a long DNS name, or (2) a large number of RCPT TO commands with a long e-mail name arugment in the last command.
0
Attacker Value
Unknown
CVE-2005-1931
Disclosure Date: July 05, 2005 (last updated February 22, 2025)
GoodTech SMTP Server 5.14 allows remote attackers to cause a denial of service (application crash) via a RCPT TO command with an invalid argument, as demonstrated using an "A" character.
0
Attacker Value
Unknown
CVE-2005-0107
Disclosure Date: February 25, 2005 (last updated February 22, 2025)
bsmtpd 2.3 and earlier does not properly sanitize e-mail addresses, which allows remote attackers to execute arbitrary commands.
0
Attacker Value
Unknown
CVE-2004-1291
Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Buffer overflow in qwik-smtpd allows remote attackers to use the server as an SMTP spam relay via a long HELO command, which overwrites the adjacent localIP data buffer.
0
Attacker Value
Unknown
CVE-2004-2703
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Clearswift MIMEsweeper 5.0.5, when it has been upgraded from MAILsweeper for SMTP version 4.3 or MAILsweeper Business Suite I or II, allows remote attackers to bypass scanning by including encrypted data in a mail message, which causes the message to be marked as "Clean" instead of "Encrypted".
0
Attacker Value
Unknown
CVE-2004-2677
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Format string vulnerability in qwik-smtpd.c in QwikMail SMTP (qwik-smtpd) 0.3 and earlier allows remote attackers to execute arbitrary code via format specifiers in the (1) clientRcptTo array, and the (2) Received and (3) messageID variables, possibly involving HELO and hostname arguments.
0