Описание
Multiple integer signedness errors in the NTLM implementation in Atrium MERCUR IMAPD (mcrimap4.exe) 5.00.14, with SP4, allow remote attackers to execute arbitrary code via a long NTLMSSP argument that triggers a stack-based buffer overflow.
Ссылки
- Exploit
- ExploitVendor Advisory
- Exploit
- ExploitVendor Advisory
- Exploit
- ExploitVendor Advisory
- Exploit
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:atrium_software:mercur_imapd:5.00.14:sp4:*:*:*:*:*:*
EPSS
Процентиль: 98%
0.47421
Средний
10 Critical
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
Multiple integer signedness errors in the NTLM implementation in Atrium MERCUR IMAPD (mcrimap4.exe) 5.00.14, with SP4, allow remote attackers to execute arbitrary code via a long NTLMSSP argument that triggers a stack-based buffer overflow.
EPSS
Процентиль: 98%
0.47421
Средний
10 Critical
CVSS2
Дефекты
NVD-CWE-Other