Show filters
10 Total Results
Displaying 1-10 of 10
Sort by:
Attacker Value
Unknown

CVE-2007-5018

Disclosure Date: September 20, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in IMAPD in Mercury/32 4.52 allows remote authenticated users to execute arbitrary code via a long argument in a SEARCH ON command. NOTE: this issue might overlap with CVE-2004-1211.
0
Attacker Value
Unknown

CVE-2005-4444

Disclosure Date: December 21, 2005 (last updated February 22, 2025)
Stack-based buffer overflow in the trace message functionality in Pegasus Mail 4.21a through 4.21c and 4.30PB1 allow remote attackers to execute arbitrary code via a long POP3 reply.
0
Attacker Value
Unknown

CVE-2005-4445

Disclosure Date: December 21, 2005 (last updated February 22, 2025)
Off-by-one error in Pegasus Mail 4.21a through 4.21c and 4.30PB1 allows remote attackers to execute arbitrary code via a long email message header, which triggers a one-byte buffer overflow.
0
Attacker Value
Unknown

CVE-2005-4411

Disclosure Date: December 20, 2005 (last updated February 22, 2025)
Buffer overflow in Mercury Mail Transport System 4.01b allows remote attackers to execute arbitrary code via a long request to TCP port 105.
0
Attacker Value
Unknown

CVE-2004-1211

Disclosure Date: January 10, 2005 (last updated February 22, 2025)
Multiple buffer overflows in the IMAP service in Mercury/32 4.01a allow remote authenticated users to cause a denial of service (application crash) and possibly execute arbitrary code via long arguments to the (1) EXAMINE, (2) SUBSCRIBE, (3) STATUS, (4) APPEND, (5) CHECK, (6) CLOSE, (7) EXPUNGE, (8) FETCH, (9) RENAME, (10) DELETE, (11) LIST, (12) SEARCH, (13) CREATE, or (14) UNSUBSCRIBE commands.
0
Attacker Value
Unknown

CVE-2002-1075

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Buffer overflow in Pegasus mail client 4.01 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long (1) To or (2) From headers.
0
Attacker Value
Unknown

CVE-2001-0442

Disclosure Date: June 27, 2001 (last updated February 22, 2025)
Buffer overflow in Mercury MTA POP3 server for NetWare 1.48 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long APOP command.
0
Attacker Value
Unknown

CVE-2000-0930

Disclosure Date: December 19, 2000 (last updated February 22, 2025)
Pegasus Mail 3.12 allows remote attackers to read arbitrary files via an embedded URL that calls the mailto: protocol with a -F switch.
0
Attacker Value
Unknown

CVE-2000-0931

Disclosure Date: December 19, 2000 (last updated February 22, 2025)
Buffer overflow in Pegasus Mail 3.11 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long email message containing binary data.
0
Attacker Value
Unknown

CVE-1999-1366

Disclosure Date: May 15, 1999 (last updated February 22, 2025)
Pegasus e-mail client 3.0 and earlier uses weak encryption to store POP3 passwords in the pmail.ini file, which allows local users to easily decrypt the passwords and read e-mail.
0