5 results (0.003 seconds)

CVSS: 5.3EPSS: 1%CPEs: 3EXPL: 1

19 Dec 2000 — The POP3 server in Netscape Messaging Server 4.15p1 generates different error messages for incorrect user names versus incorrect passwords, which allows remote attackers to determine valid users on the system and harvest email addresses for spam abuse. • http://marc.info/?l=bugtraq&m=97138100426121&w=2 •

CVSS: 10.0EPSS: 0%CPEs: 2EXPL: 0

19 Dec 2000 — Buffer overflow in IMAP server in Netscape Messaging Server 4.15 Patch 2 allows local users to execute arbitrary commands via a long LIST command. • http://archives.neohapsis.com/archives/bugtraq/2000-09/0334.html •

CVSS: 7.5EPSS: 4%CPEs: 3EXPL: 2

29 Oct 1999 — Netscape Messaging Server 3.54, 3.55, and 3.6 allows a remote attacker to cause a denial of service (memory exhaustion) via a series of long RCPT TO commands. • https://www.exploit-db.com/exploits/19571 •

CVSS: 10.0EPSS: 31%CPEs: 2EXPL: 1

20 Jul 1998 — Arbitrary command execution via IMAP buffer overflow in authenticate command. • https://www.exploit-db.com/exploits/19107 •

CVSS: 7.5EPSS: 5%CPEs: 22EXPL: 0

26 Jun 1998 — Information from SSL-encrypted sessions via PKCS #1. • https://docs.microsoft.com/en-us/security-updates/securitybulletins/1998/ms98-002 • CWE-327: Use of a Broken or Risky Cryptographic Algorithm •