Back to search
CVE-2007-4440
Published: Aug 21, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
Stack-based buffer overflow in the MercuryS SMTP server in Mercury Mail Transport System, possibly 4.51 and earlier, allows remote attackers to execute arbitrary code via a long AUTH CRAM-MD5 string. NOTE: this might overlap CVE-2006-5961.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
26519
third-party-advisory
x_refsource_SECUNIA
20070818 Mercury SMTPD Remote Preauth Stack Based Overrun
mailing-list
x_refsource_FULLDISC
ADV-2007-2918
vdb-entry
x_refsource_VUPEN
4294
exploit
x_refsource_EXPLOIT-DB
http://www.pmail.com/m32_451.htm
x_refsource_CONFIRM
25357
vdb-entry
x_refsource_BID
mercury-smtp-bo(36117)
vdb-entry
x_refsource_XF
1018587
vdb-entry
x_refsource_SECTRACK
mercury-authcrammd5-bo(36299)
vdb-entry
x_refsource_XF
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now