vendor:
Mailserver
by:
Unknown
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: Mailserver
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE: a:mercur:mailserver
Platforms Tested:
2002
MERCUR Mailserver Remote Buffer Overflow
MERCUR Mailserver is prone to a remotely exploitable buffer overflow condition. The condition is due to insufficient bounds checking in the Control-Service component, which listens on TCP port 32000 by default. It is possible to corrupt process memory by supplying an overly long username/password. Attackers may exploit this condition to execute arbitrary instructions with the privileges of the mailserver.
Mitigation:
No mitigation provided