header-logo
Suggest Exploit
vendor:
BaSoMail POP3 Server
by:
SecurityFocus
7.5
CVSS
HIGH
Remote Denial of Service
N/A
CWE
Product Name: BaSoMail POP3 Server
Affected Version From: BaSoMail POP3 Server
Affected Version To: BaSoMail POP3 Server
Patch Exists: N/A
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002

BaSoMail POP3 Server Remote Denial of Service Vulnerability

BaSoMail POP3 server has been reported prone to a remote denial of service vulnerability. It has been reported that a remote authenticated attacker, may supply negative value integers to several POP3 commands successively. If the attacker then invokes the QUIT command the BaSoMail server will reportedly fail, possibly due to an internal exception.

Mitigation:

N/A
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/7724/info

BaSoMail POP3 server has been reported prone to a remote denial of service vulnerability.

It has been reported that a remote authenticated attacker, may supply negative value integers to several POP3 commands successively. If the attacker then invokes the QUIT command the BaSoMail server will reportedly fail, possibly due to an internal exception. 

+OK Welcome to BaSoMail (www.BaSo.no)
user XXXX
+OK
pass XXXX
+OK Access granted
list -0
dele -0000
quit