VulnerabilityModified
CVE-2005-4402
Buffer overflow in MailEnable Professional 1.71 and earlier, and Enterprise 1.1 and earlier, allows remote authenticated users to execute arbitrary code via a long IMAP EXAMINE command.
MEDIUM 6.5EPSS 4.34%
Does this matter?
Lower severity and a low EPSS score (4.34%). Track it; it rarely justifies an emergency change on its own.
Description
Buffer overflow in MailEnable Professional 1.71 and earlier, and Enterprise 1.1 and earlier, allows remote authenticated users to execute arbitrary code via a long IMAP EXAMINE command.
- CVSS 2.0
- 6.5 MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
- EPSS
- 4.34% probability · 91th percentile
- CISA KEV
- Not listed
- Affected
- mailenable/mailenable enterprise · mailenable/mailenable professional
- Source
- cve@mitre.org
References
- http://marc.info/?l=full-disclosure&m=113502692010867&w=2
- http://securitytracker.com/alerts/2005/Dec/1015378.html
- http://www.mailenable.com/hotfix/Patch
- http://www.vupen.com/english/advisories/2005/2988
- http://marc.info/?l=full-disclosure&m=113502692010867&w=2
- http://securitytracker.com/alerts/2005/Dec/1015378.html
- http://www.mailenable.com/hotfix/Patch
- http://www.vupen.com/english/advisories/2005/2988
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.