vendor:
EmailClub
by:
UNYUN
7,5
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: EmailClub
Affected Version From: 1.0.0.5
Affected Version To: 1.0.0.5
Patch Exists: NO
Related CWE: N/A
CPE: a:admiral_systems_inc:emailclub
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 95/98, Windows NT
1999
EmailClub Ver1.0.0.5 for Windows98J exploit
Certain versions of EmailClub, a mail server package by Admiral Systems Inc. are vulnerable to a remote buffer overflow. This overflow is exploitable via EmailClub's POP3 server which fails to perform proper bounds checking on the 'From:' header on incoming e-mail. This overflow will lead to a complete compromise of the Windows 95/98 target machine. It may well also affect Windows NT installations in the same manner.
Mitigation:
Perform proper bounds checking on the 'From:' header on incoming e-mail.