Multiple buffer overflows in the IMAP service (MEIMAPS.EXE) in MailEnable Professional Edition and Enterprise Edition 3.13 and earlier allow remote authenticated attackers to execute arbitrary code via long arguments to the (1) FETCH, (2) EXAMINE, and (3) UNSUBSCRIBE commands.
- http://aluigi.altervista.org/adv/maildisable-adv.txt
- http://securityreason.com/securityalert/3724
- https://www.exploit-db.com/exploits/5249
No PoCs found on GitHub currently.