Family: Gain a shell remotely --> Category: mixed
Mercury ph Server Buffer Overflow Vulnerability Vulnerability Scan
Vulnerability Scan Summary
Checks for a buffer overflow vulnerability in Mercury ph Server
Detailed Explanation for this Vulnerability Test
The remote ph service is affected by a buffer overflow vulnerability.
The remote host is running the Mercury Mail Transport System, a free
suite of server products for Windows and Netware associated with
The remote installation of Mercury includes a ph server that is
vulnerable to buffer overflow attacks. By leveraging this issue, an
unauthenticated remote attacker is able to crash the remote service
and possibly execute arbitrary code remotely.
See also :
Install the Jan 2006 Mercury/32 Security patches for MercuryW and
MercuryH from http://www.pmail.com/patches.htm.
High / CVSS Base Score : 7
Click HERE for more information and discussions on this network vulnerability scan.