vendor:
MDaemon
by:
N/A
9
CVSS
CRITICAL
Buffer Overflow
120 (Buffer Copy without Checking Size of Input)
CWE
Product Name: MDaemon
Affected Version From: < v9.6.5
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
N/A
MDaemon <== v9.6.5 Multiple Remote Buffer Overflow
A buffer overflow vulnerability exists in MDaemon versions prior to v9.6.5. An attacker can send a malicious message with a subject composed of 8194 A characters to a user or postmaster, and if the user clicks 'answer' to the message, the EIP gets owned. The CC & From field is also vulnerable. Additionally, a full control over EDX can be achieved without any authentication.
Mitigation:
Upgrade to the latest version of MDaemon.