CVE-2006-0637
QUALCOMM Eudora WorldMail 3.0 - Remote Code Execution via IMAP APPEND Command
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-0637. PoCs published by muts.
AI-analyzed exploit summary This exploit targets a pre-authentication buffer overflow in Eudora Qualcomm WorldMail 3.0 IMAPd Service 6.1.19.0 via the LIST command. It uses a two-stage shellcode approach to bypass space constraints and spawns a bind shell on port 4444.
Description
Buffer overflow in cram.dll in QUALCOMM Eudora WorldMail 3.0 allows remote attackers to execute arbitrary code via an IMAP APPEND command with a long message literal argument, as demonstrated by Worldmail.pl. NOTE: this is a different vector and a different manipulation than CVE-2005-4267, so it might be a different vulnerability than CVE-2005-4267.
Exploits (1)
This exploit targets a pre-authentication buffer overflow in Eudora Qualcomm WorldMail 3.0 IMAPd Service 6.1.19.0 via the LIST command. It uses a two-stage shellcode approach to bypass space constraints and spawns a bind shell on port 4444.