vendor:
IMAP
by:
patrick
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: IMAP
Affected Version From: IMAP4rev1 v12.264
Affected Version To: IMAP4rev1 v12.264
Patch Exists: YES
Related CWE: CVE-2000-0284
CPE: a:uw:imap:12.264
Metasploit:
N/A
Other Scripts:
https://www.infosecmatter.com/nessus-plugin-library/?id=10625, https://www.infosecmatter.com/metasploit-module-library/?mm=exploit/linux/imap/imap_uw_lsub, https://www.infosecmatter.com/nessus-plugin-library/?id=57619, https://www.infosecmatter.com/list-of-metasploit-windows-exploits-detailed-spreadsheet/, https://www.infosecmatter.com/list-of-metasploit-linux-exploits-detailed-spreadsheet/
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2000
UoW IMAP server LSUB Buffer Overflow
This module exploits a buffer overflow in the 'LSUB' command of the University of Washington IMAP service. This vulnerability can only be exploited with a valid username and password.
Mitigation:
Ensure that the IMAP server is up to date with the latest security patches.