Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2008-1276

Description

Multiple buffer overflows in the IMAP service (MEIMAPS.EXE) in MailEnable Professional Edition and Enterprise Edition 3.13 and earlier allow remote authenticated attackers to execute arbitrary code via long arguments to the (1) FETCH, (2) EXAMINE, and (3) UNSUBSCRIBE commands.

POC

Reference

- http://aluigi.altervista.org/adv/maildisable-adv.txt

- http://securityreason.com/securityalert/3724

- https://www.exploit-db.com/exploits/5249

Github

No PoCs found on GitHub currently.