20020725 IPSwitch IMail ADVISORY/EXPLOIT/PATCHmailing list
http://archives.neohapsis.com/archives/bugtraq/2002-07/0326.html CVE-2002-1076
IPSwitch IMail 6.x/7.0/7.1 - Web Messaging GET Buffer Overflow
Record summary
CVE-2002-1076 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Buffer overflow in the Web Messaging daemon for Ipswitch IMail before 7.12 allows remote attackers to execute arbitrary code via a long HTTP GET request for HTTP/1.0.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBIPSwitch IMail 6.x/7.0/7.1 - Web Messaging GET Buffer OverflowExploitDB exploitby anonymousNot analyzed1 file
References
820020729 Hoax Exploitmailing list
http://archives.neohapsis.com/archives/bugtraq/2002-07/0363.html 20020729 Re: Hoax Exploit (2c79cbe14ac7d0b8472d3f129fa1df55 RETURNS)mailing list
http://archives.neohapsis.com/archives/bugtraq/2002-07/0368.html support.ipswitch.comConfirmation
http://support.ipswitch.com/kb/IM-20020729-DM01.htm support.ipswitch.comConfirmation
http://support.ipswitch.com/kb/IM-20020731-DM02.htm imail-web-messaging-bo(9679)vdb entry
http://www.iss.net/security_center/static/9679.php 5323vdb entry
http://www.securityfocus.com/bid/5323 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2002-1076