Show filters
126 Total Results
Displaying 91-100 of 126
Sort by:
Attacker Value
Unknown
CVE-2008-0394
Disclosure Date: January 23, 2008 (last updated October 04, 2023)
Buffer overflow in Citadel SMTP server 7.10 and earlier allows remote attackers to execute arbitrary code via a long RCPT TO command, which is not properly handled by the makeuserkey function. NOTE: some of these details were obtained from third party information.
0
Attacker Value
Unknown
CVE-2007-6573
Disclosure Date: December 28, 2007 (last updated October 04, 2023)
QK SMTP Server 3 allows remote attackers to cause a denial of service (daemon crash) via a long (1) HELO, (2) MAIL FROM, or (3) RCPT TO command; or (4) a long string in the message sent after the DATA command; possibly a related issue to CVE-2006-5551.
0
Attacker Value
Unknown
CVE-2007-3796
Disclosure Date: July 17, 2007 (last updated October 04, 2023)
The password reset feature in the Spam Quarantine HTTP interface for MailMarshal SMTP 6.2.0.x before 6.2.1 allows remote attackers to modify arbitrary account information via a UserId variable with a large amount of trailing whitespace followed by a malicious value, which triggers SQL buffer truncation due to length inconsistencies between variables.
0
Attacker Value
Unknown
CVE-2006-5487
Disclosure Date: November 10, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in Marshal MailMarshal SMTP 5.x, 6.x, and 2006, and MailMarshal for Exchange 5.x, allows remote attackers to write arbitrary files via ".." sequences in filenames in an ARJ compressed archive.
0
Attacker Value
Unknown
CVE-2006-5551
Disclosure Date: October 26, 2006 (last updated October 04, 2023)
Stack-based buffer overflow in QK SMTP 3.01 and earlier might allow remote attackers to execute arbitrary code via a long argument to the RCPT TO command.
0
Attacker Value
Unknown
CVE-2006-4258
Disclosure Date: August 21, 2006 (last updated October 04, 2023)
Absolute path traversal vulnerability in the get functionality in Anti-Spam SMTP Proxy (ASSP) allows remote authenticated users to read arbitrary files via (1) C:\ (Windows drive letter), (2) UNC, and possibly other types of paths in the file parameter.
0
Attacker Value
Unknown
CVE-2006-3215
Disclosure Date: June 24, 2006 (last updated October 04, 2023)
Clearswift MAILsweeper for SMTP before 4.3.20 and MAILsweeper for Exchange before 4.3.20 allows remote attackers to bypass the "text analysis", possibly bypassing SPAM and other filters, by sending an e-mail specifying a non-existent or unrecognized character set.
0
Attacker Value
Unknown
CVE-2006-3216
Disclosure Date: June 24, 2006 (last updated October 04, 2023)
Clearswift MAILsweeper for SMTP before 4.3.20 and MAILsweeper for Exchange before 4.3.20 allows remote attackers to cause a denial of service via (1) non-ASCII characters in a reverse DNS lookup result from a Received header, which leads to a Receiver service stop, and (2) unspecified vectors involving malformed messages, which causes "unpredictable behavior" that prevents the Security service from processing more messages.
0
Attacker Value
Unknown
CVE-2006-2107
Disclosure Date: April 29, 2006 (last updated October 04, 2023)
Buffer overflow in BL4 SMTP Server 0.1.4 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a long argument to the (1) EHLO, (2) MAIL FROM, and (3) RCPT TO commands.
0
Attacker Value
Unknown
CVE-2006-0559
Disclosure Date: April 04, 2006 (last updated February 22, 2025)
Format string vulnerability in the SMTP server for McAfee WebShield 4.5 MR2 and earlier allows remote attackers to execute arbitrary code via format strings in the domain name portion of a destination address, which are not properly handled when a bounce message is constructed.
0