CVE-2004-1546 – Alt-N MDaemon 6.5.1 - IMAP/SMTP Remote Buffer Overflow
https://notcve.org/view.php?id=CVE-2004-1546
Multiple buffer overflows in MDaemon 6.5.1 allow remote attackers to cause a denial of service (application crash) via a long (1) SAML, SOML, SEND, or MAIL command to the SMTP server or (2) LIST command to the IMAP server. • https://www.exploit-db.com/exploits/473 https://www.exploit-db.com/exploits/24624 http://lists.grok.org.uk/pipermail/full-disclosure/2004-September/026770.html http://marc.info/?l=bugtraq&m=109591179510781&w=2 http://www.osvdb.org/10223 http://www.osvdb.org/10224 http://www.securityfocus.com/bid/11238 http://www.securitylab.ru/48146.html https://exchange.xforce.ibmcloud.com/vulnerabilities/17476 https://exchange.xforce.ibmcloud.com/vulnerabilities/17477 •
CVE-2004-2292
https://notcve.org/view.php?id=CVE-2004-2292
Buffer overflow in Alt-N MDaemon 7.0.1 allows remote attackers to cause a denial of service (application crash) via a long STATUS command to the IMAP server. • http://archives.neohapsis.com/archives/fulldisclosure/2004-05/0527.html http://www.securityfocus.com/bid/10366 https://exchange.xforce.ibmcloud.com/vulnerabilities/16118 •
CVE-2004-2504
https://notcve.org/view.php?id=CVE-2004-2504
The GUI in Alt-N Technologies MDaemon 7.2 and earlier, including 6.8, executes child processes such as NOTEPAD.EXE with SYSTEM privileges when users create new files, which allows local users with physical access to gain privileges. • http://archives.neohapsis.com/archives/bugtraq/2004-11/0385.html http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1324.html http://archives.neohapsis.com/archives/fulldisclosure/2004-11/1353.html http://secunia.com/advisories/13225 http://securitytracker.com/id?1012350 http://www.osvdb.org/12158 http://www.securityfocus.com/bid/11736 https://exchange.xforce.ibmcloud.com/vulnerabilities/18287 •
CVE-2003-1471
https://notcve.org/view.php?id=CVE-2003-1471
MDaemon POP server 6.0.7 and earlier allows remote authenticated users to cause a denial of service (crash) via a (1) DELE or (2) UIDL with a negative number. • http://archive.cert.uni-stuttgart.de/bugtraq/2003/04/msg00364.html http://archives.neohapsis.com/archives/bugtraq/2003-04/0359.html http://www.securityfocus.com/bid/7445 https://exchange.xforce.ibmcloud.com/vulnerabilities/11882 • CWE-20: Improper Input Validation •
CVE-2003-1470
https://notcve.org/view.php?id=CVE-2003-1470
Buffer overflow in IMAP service in MDaemon 6.7.5 and earlier allows remote authenticated users to cause a denial of service (crash) and execute arbitrary code via a CREATE command with a long mailbox name. • http://securityreason.com/securityalert/3296 http://www.securityfocus.com/archive/1/319879 http://www.securityfocus.com/bid/7446 https://exchange.xforce.ibmcloud.com/vulnerabilities/11896 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •