Show filters
126 Total Results
Displaying 101-110 of 126
Sort by:
Attacker Value
Unknown

CVE-2006-0447

Disclosure Date: January 27, 2006 (last updated February 22, 2025)
Multiple buffer overflows in E-Post Mail Server 4.10 and SPA-PRO Mail @Solomon 4.00 allow remote attackers to execute arbitrary code via a long username to the (1) AUTH PLAIN or (2) AUTH LOGIN SMTP commands, which is not properly handled by (a) EPSTRS.EXE or (b) SPA-RS.EXE; (3) a long username in the APOP POP3 command, which is not properly handled by (c) EPSTPOP4S.EXE or (d) SPA-POP3S.EXE; (4) a long IMAP DELETE command, which is not properly handled by (e) EPSTIMAP4S.EXE or (f) SPA-IMAP4S.EXE.
0
Attacker Value
Unknown

CVE-2005-4324

Disclosure Date: December 17, 2005 (last updated February 22, 2025)
Hitachi Groupmax Mail SMTP 06-50 through 06-52-/A and 07-00 through 07-20 allows remote attackers to cause a denial of service (service stop) via an e-mail message with an "invalid format."
0
Attacker Value
Unknown

CVE-2005-2857

Disclosure Date: September 08, 2005 (last updated February 22, 2025)
Free SMTP Server 2.2 allows remote attackers to use the server as an open mail relay (spam proxy).
0
Attacker Value
Unknown

CVE-2005-2409

Disclosure Date: August 01, 2005 (last updated February 22, 2025)
Format string vulnerability in util.c in nbsmtp 0.99 and earlier, while running in debug mode, allows remote attackers to execute arbitrary code via format string specifiers that are not properly handled in a syslog call.
0
Attacker Value
Unknown

CVE-2005-2387

Disclosure Date: July 27, 2005 (last updated February 22, 2025)
Multiple stack-based buffer overflows in GoodTech SMTP server 5.16 allow remote attackers to execute arbitrary code via (1) a RCPT TO command with a long DNS name, or (2) a large number of RCPT TO commands with a long e-mail name arugment in the last command.
0
Attacker Value
Unknown

CVE-2005-1931

Disclosure Date: July 05, 2005 (last updated February 22, 2025)
GoodTech SMTP Server 5.14 allows remote attackers to cause a denial of service (application crash) via a RCPT TO command with an invalid argument, as demonstrated using an "A" character.
0
Attacker Value
Unknown

CVE-2005-0107

Disclosure Date: February 25, 2005 (last updated February 22, 2025)
bsmtpd 2.3 and earlier does not properly sanitize e-mail addresses, which allows remote attackers to execute arbitrary commands.
0
Attacker Value
Unknown

CVE-2004-1291

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Buffer overflow in qwik-smtpd allows remote attackers to use the server as an SMTP spam relay via a long HELO command, which overwrites the adjacent localIP data buffer.
0
Attacker Value
Unknown

CVE-2004-2703

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Clearswift MIMEsweeper 5.0.5, when it has been upgraded from MAILsweeper for SMTP version 4.3 or MAILsweeper Business Suite I or II, allows remote attackers to bypass scanning by including encrypted data in a mail message, which causes the message to be marked as "Clean" instead of "Encrypted".
0
Attacker Value
Unknown

CVE-2004-2677

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Format string vulnerability in qwik-smtpd.c in QwikMail SMTP (qwik-smtpd) 0.3 and earlier allows remote attackers to execute arbitrary code via format specifiers in the (1) clientRcptTo array, and the (2) Received and (3) messageID variables, possibly involving HELO and hostname arguments.
0