Show filters
90 Total Results
Displaying 61-70 of 90
Sort by:
Attacker Value
Unknown

CVE-2004-1520

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Stack-based buffer overflow in IPSwitch IMail 8.13 allows remote authenticated users to execute arbitrary code via a long IMAP DELETE command.
0
Attacker Value
Unknown

CVE-2004-2422

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Multiple features in Ipswitch IMail Server before 8.13 allow remote attackers to cause a denial of service (crash) via (1) a long sender field to the Queue Manager or (2) a long To field to the Web Messaging component.
0
Attacker Value
Unknown

CVE-2004-2401

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Stack-based buffer overflow in Ipswitch IMail Express Web Messaging before 8.05 might allow remote attackers to execute arbitrary code via an HTML message with long "tag text."
0
Attacker Value
Unknown

CVE-2004-0297

Disclosure Date: November 23, 2004 (last updated February 22, 2025)
Buffer overflow in the Lightweight Directory Access Protocol (LDAP) daemon (iLDAP.exe 3.9.15.10) in Ipswitch IMail Server 8.03 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via an LDAP message with a large tag length.
0
Attacker Value
Unknown

CVE-2002-1076

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Buffer overflow in the Web Messaging daemon for Ipswitch IMail before 7.12 allows remote attackers to execute arbitrary code via a long HTTP GET request for HTTP/1.0.
0
Attacker Value
Unknown

CVE-2002-1077

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
IPSwitch IMail Web Calendaring service (iwebcal) allows remote attackers to cause a denial of service (crash) via an HTTP POST request without a Content-Length field.
0
Attacker Value
Unknown

CVE-2002-0777

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
Buffer overflow in the LDAP component of Ipswitch IMail 7.1 and earlier allows remote attackers to execute arbitrary code via a long "bind DN" parameter.
0
Attacker Value
Unknown

CVE-2002-0455

Disclosure Date: August 12, 2002 (last updated February 22, 2025)
IncrediMail stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames.
0
Attacker Value
Unknown

CVE-2001-1211

Disclosure Date: December 31, 2001 (last updated February 22, 2025)
Ipswitch IMail 7.0.4 and earlier allows attackers with administrator privileges to read and modify user alias and mailing list information for other domains hosted by the same server via the (1) aliasadmin or (2) listadm1 CGI programs, which do not properly verify that an administrator is the administrator for the target domain.
0
Attacker Value
Unknown

CVE-2001-1280

Disclosure Date: October 12, 2001 (last updated February 22, 2025)
POP3 Server for Ipswitch IMail 7.04 and earlier generates different responses to valid and invalid user names, which allows remote attackers to determine users on the system.
0