Описание
Buffer overflow in the base64 decoder in MERCUR Mailserver 4.2 before SP3a allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long (1) AUTH command to the POP3 server or (2) AUTHENTICATE command to the IMAP server.
Ссылки
- Exploit
- Patch
- Exploit
- Exploit
- Exploit
- Exploit
- Patch
- Exploit
- Exploit
- Exploit
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:atrium_software:mercur_mailserver:3.3:*:*:*:*:*:*:*
cpe:2.3:a:atrium_software:mercur_mailserver:3.3_sp1:*:*:*:*:*:*:*
cpe:2.3:a:atrium_software:mercur_mailserver:3.3_sp2:*:*:*:*:*:*:*
cpe:2.3:a:atrium_software:mercur_mailserver:4.1:*:*:*:*:*:*:*
cpe:2.3:a:atrium_software:mercur_mailserver:4.1_sp1:*:*:*:*:*:*:*
cpe:2.3:a:atrium_software:mercur_mailserver:4.2:*:*:*:*:*:*:*
cpe:2.3:a:atrium_software:mercur_mailserver:4.2_sp1:*:*:*:*:*:*:*
cpe:2.3:a:atrium_software:mercur_mailserver:4.2_sp2:*:*:*:*:*:*:*
EPSS
Процентиль: 96%
0.23249
Средний
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Buffer overflow in the base64 decoder in MERCUR Mailserver 4.2 before SP3a allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long (1) AUTH command to the POP3 server or (2) AUTHENTICATE command to the IMAP server.
EPSS
Процентиль: 96%
0.23249
Средний
7.5 High
CVSS2
Дефекты
NVD-CWE-Other