Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Gain a shell remotely >> Mercury Mail Remote IMAP Stack Buffer Overflow Vulnerability


Vulnerability Assessment Details

Mercury Mail Remote IMAP Stack Buffer Overflow Vulnerability

Vulnerability Assessment Summary
Checks for version of Mercury Mail

Detailed Explanation for this Vulnerability Assessment

The remote host is running Mercury Mail server, an IMAP server for
Windows operating systems.

It is reported that versions up to and including 4.01 are prone to
stack buffer overflow vulnerabilities. An authenticated attacker may
execute arbitrary code on the remote server. The attacker needs to
authenticate in order to exploit these vulnerabilities against the
IMAP server.

Solution : No solution at this time.
Network Security Threat Level: High

Networks Security ID: 11775, 11788

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors

New Open Box Cisco C9200-24P-A Catalyst 9200 series 24-port Switch
$1920.0
New Open Box Cisco C9200-24P-A Catalyst 9200 series 24-port Switch pictureHP ProCurve 1800-8G J9029A 8-Ports 10/100/1000Base-T LAN Managed Ethernet Switch
$39.95
HP ProCurve 1800-8G J9029A 8-Ports 10/100/1000Base-T LAN Managed Ethernet Switch pictureNew Open Box Cisco C9200L-24T-4G-E 9200 Series 24-port Data 4x1G uplink Switch
$950.0
New Open Box Cisco C9200L-24T-4G-E 9200 Series 24-port Data 4x1G uplink Switch pictureAraknis AN-310-RT-4L2W 310-Series Gigabit VPN Router *BRAND NEW NEVER USED*
$275.0
Araknis AN-310-RT-4L2W 310-Series Gigabit VPN Router *BRAND NEW NEVER USED* picture


Discussions

No Discussions have been posted on this vulnerability.