Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Gain root remotely >> IA eMailServer IMAP Server Search Command Buffer Overflow Vulnerability


Vulnerability Assessment Details

IA eMailServer IMAP Server Search Command Buffer Overflow Vulnerability

Vulnerability Assessment Summary
Checks for search command buffer overflow vulnerability in IA eMailServer's IMAP server

Detailed Explanation for this Vulnerability Assessment

Summary :

The remote IMAP server is susceptible to buffer overflow attacks.

Description :

The remote host is running IA eMailServer, a commercial messaging
system for Windows.

The IMAP server bundled with the version of IA eMailServer installed
on the remote host crashes when it receives a SEARCH command argument
of 560 or more characters. An authenticated attacker could exploit
this issue to crash the service and possibly to execute arbitrary code
remotely.

Note that IA eMailServer can be configured to run as a service with
LOCAL SYSTEM rights, although this is not the default.

See also :

http://www.securityfocus.com/archive/1/425586/30/0/threaded

Solution :

Unknown at this time.

Network Security Threat Level:

Medium / CVSS Base Score : 4.2
(AV:R/AC:L/Au:R/C:P/I:P/A:P/B:N)

Networks Security ID: 16744

Vulnerability Assessment Copyright: This script is Copyright (C) 2006 Tenable Network Security

Cables, Connectors


Certified Refurbished 5TB WD Elements Portable Hard Drive - RWDBU6Y0050BBK-WESN picture

Certified Refurbished 5TB WD Elements Portable Hard Drive - RWDBU6Y0050BBK-WESN

$99.99



HITACHI HUS724040ALA640 4TB 7200RPM 64MB SATA 6.0Gb/s 3.5

HITACHI HUS724040ALA640 4TB 7200RPM 64MB SATA 6.0Gb/s 3.5" HARD DRIVE ZERO HOURS

$59.99



Certified Refurbished 2TB WD Elements Portable Hard Drive - RWDBU6Y0020BBK-WESN picture

Certified Refurbished 2TB WD Elements Portable Hard Drive - RWDBU6Y0020BBK-WESN

$49.99



12TB 7200RPM 256MB Cache SATA 6.0Gb/s 3.5

12TB 7200RPM 256MB Cache SATA 6.0Gb/s 3.5" Internal NAS Hard Drive -

$85.00



HGST Ultrastar DC HC520 12TB SATA 6Gb 256MB 3.5

HGST Ultrastar DC HC520 12TB SATA 6Gb 256MB 3.5" Enterprise HDD- HUH721212ALE601

$89.99



WD Ultrastar DC HC530 14TB SATA 6G 3.5

WD Ultrastar DC HC530 14TB SATA 6G 3.5" 7200RPM Enterprise HDD - WUH721414ALE604

$119.99



Hitachi HUS723030ALS640 3TB 3.5

Hitachi HUS723030ALS640 3TB 3.5" 64MB 7.2K RPM SAS Drive P/N:0B26328 Tested

$13.99



HITACHI HGST HTS721010A9E630 1TB 2.5

HITACHI HGST HTS721010A9E630 1TB 2.5" SATA3 7200RPM Hard Drive - B GRADE TESTED

$14.95



SEAGATE ST6000NM0034 6TB 7.2K SAS 3.5

SEAGATE ST6000NM0034 6TB 7.2K SAS 3.5" HDD HARD DRIVE

$64.00



1TB HDD/SSD 2.5

1TB HDD/SSD 2.5" SATA Hard Drive for Laptop with Win 10/Win 11 Pro Pre-installed

$20.49



Discussions

No Discussions have been posted on this vulnerability.