Search Results (28 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2003-1470 1 Alt-n 1 Mdaemon 2025-04-03 N/A
Buffer overflow in IMAP service in MDaemon 6.7.5 and earlier allows remote authenticated users to cause a denial of service (crash) and execute arbitrary code via a CREATE command with a long mailbox name.
CVE-2001-0064 1 Alt-n 1 Mdaemon 2025-04-03 N/A
Webconfig, IMAP, and other services in MDaemon 3.5.0 and earlier allows remote attackers to cause a denial of service via a long URL terminated by a "\r\n" string.
CVE-2000-0501 1 Alt-n 1 Mdaemon 2025-04-03 N/A
Race condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly exiting the server.
CVE-2000-0399 1 Alt-n 1 Mdaemon 2025-04-03 N/A
Buffer overflow in MDaemon POP server allows remote attackers to cause a denial of service via a long user name.
CVE-2000-0716 1 Alt-n 1 Mdaemon 2025-04-03 N/A
WorldClient email client in MDaemon 2.8 includes the session ID in the referer field of an HTTP request when the user clicks on a URL, which allows the visited web site to hijack the session ID and read the user's email.
CVE-2000-1020 1 Alt-n 1 Mdaemon 2025-04-03 N/A
Heap overflow in Worldclient in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.
CVE-2000-1021 1 Alt-n 1 Mdaemon 2025-04-03 N/A
Heap overflow in WebConfig in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.
CVE-2001-0104 1 Alt-n 1 Mdaemon 2025-04-03 N/A
MDaemon Pro 3.5.1 and earlier allows local users to bypass the "lock server" security setting by pressing the Cancel button at the password prompt, then pressing the enter key.