
CVE-2001-0691
https://notcve.org/view.php?id=CVE-2001-0691
29 Aug 2001 — Buffer overflows in Washington University imapd 2000a through 2000c could allow local users without shell access to execute code as themselves in certain configurations. • http://www.iss.net/security_center/static/6269.php •

CVE-2000-0909 – UoW Pine 4.0.4/4.10/4.21 - 'From:' Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2000-0909
19 Dec 2000 — Buffer overflow in the automatic mail checking component of Pine 4.21 and earlier allows remote attackers to execute arbitrary commands via a long From: header. • https://www.exploit-db.com/exploits/20237 •

CVE-2000-0847
https://notcve.org/view.php?id=CVE-2000-0847
14 Nov 2000 — Buffer overflow in University of Washington c-client library (used by pine and other programs) allows remote attackers to execute arbitrary commands via a long X-Keywords header. • http://archives.neohapsis.com/archives/bugtraq/2000-08/0425.html •

CVE-2000-0284 – IMAP4rev1 10.190 - Authentication Stack Overflow
https://notcve.org/view.php?id=CVE-2000-0284
16 Apr 2000 — Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands. • https://www.exploit-db.com/exploits/253 •

CVE-1999-0997 – WU-FTPD 2.4.2/2.5 .0/2.6.0/2.6.1/2.6.2 - FTP Conversion
https://notcve.org/view.php?id=CVE-1999-0997
20 Dec 1999 — wu-ftp with FTP conversion enabled allows an attacker to execute commands via a malformed file name that is interpreted as an argument to the program that does the conversion, e.g. tar or uncompress. • https://www.exploit-db.com/exploits/20563 •

CVE-2000-0352
https://notcve.org/view.php?id=CVE-2000-0352
18 Nov 1999 — Pine before version 4.21 does not properly filter shell metacharacters from URLs, which allows remote attackers to execute arbitrary commands via a malformed URL. • ftp://ftp.calderasystems.com/pub/OpenLinux/security/CSSA-1999-036.0.txt •

CVE-2000-0353
https://notcve.org/view.php?id=CVE-2000-0353
28 Jun 1999 — Pine 4.x allows a remote attacker to execute arbitrary commands via an index.html file which executes lynx and obtains a uudecoded file from a malicious web server, which is then executed by Pine. • http://www.novell.com/linux/security/advisories/pine_update_announcement.html •

CVE-1999-0920 – University of Washington pop2d 4.4 - Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0920
26 May 1999 — Buffer overflow in the pop-2d POP daemon in the IMAP package allows remote attackers to gain privileges via the FOLD command. • https://www.exploit-db.com/exploits/19226 •

CVE-1999-0005 – Netscape Messaging Server 3.55 & University of Washington imapd 10.234 - Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-1999-0005
20 Jul 1998 — Arbitrary command execution via IMAP buffer overflow in authenticate command. • https://www.exploit-db.com/exploits/19107 •

CVE-1999-0004
https://notcve.org/view.php?id=CVE-1999-0004
16 Dec 1997 — MIME buffer overflow in email clients, e.g. Solaris mailtool and Outlook. Desbordamiento de buffer en clientes de correo, como Solaris mailtool y Outlook • https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-008 •