CVE-2005-3640

Floosietek FTGate 4.1 - Remote Code Execution via Long IMAP Command Arguments

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-3640. PoCs published by Luca Ercoli.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in FTGate IMAP server by sending maliciously crafted EXAMINE commands with excessive data. It attempts to crash the service or execute arbitrary code via a stack-based overflow.

Description

Multiple buffer overflows in the IMAP Groupware Mail server of Floosietek FTGate (FTGate4) 4.1 allow remote attackers to execute arbitrary code via long arguments to various IMAP commands, as demonstrated with the EXAMINE command.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Luca Ercoli · perldoswindows
https://www.exploit-db.com/exploits/1327

This exploit targets a buffer overflow vulnerability in FTGate IMAP server by sending maliciously crafted EXAMINE commands with excessive data. It attempts to crash the service or execute arbitrary code via a stack-based overflow.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: FTGate IMAP Server (version not specified)
Auth required
Prerequisites: Network access to the target IMAP server (port 143) · Valid IMAP credentials for authentication
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/23101
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/15449
Exploit, Vendor Advisory x_refsource_misc
http://www.lucaercoli.it/advs/FTGate4.txt
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2005/2478
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/20917
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2005-11/0213.html
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/17609

Scores

EPSS 0.0881
EPSS Percentile 94.5%

Details

CWE
CWE-119
Status published
Products (1)
floosietek/ftgate 4_4.1
Published Nov 16, 2005
Tracked Since Feb 18, 2026