|
|
Family: Gain root remotely --> Category: mixed
MailEnable IMAP Logging Buffer Overflow Vulnerability Vulnerability Scan
Vulnerability Scan Summary Checks for logging buffer overflow vulnerability in in MailEnable's IMAP service
Detailed Explanation for this Vulnerability Test
Synopsis :
The remote IMAP server is prone to a buffer overflow.
Description :
The remote host is running a version of MailEnable's IMAP service that
is prone to a buffer overflow vulnerability in its handling of W3C
logging. A possible hacker may be able to exploit this to execute arbitrary
code subject to the rights of the affected application, typically
Administrator.
See also :
http://forum.mailenable.com/viewtopic.php?t=8555
http://www.mailenable.com/hotfix/
Solution :
Apply the 3 October 2005 IMAP Rollup Critical Update/Performance
Improvement Hotfix referenced in the vendor advisory above.
Threat Level:
Critical / CVSS Base Score : 10
(AV:R/AC:L/Au:NR/C:C/A:C/I:C/B:N)
Click HERE for more information and discussions on this network vulnerability scan.
|