CVE-2006-2502
Cyrus Imapd - Buffer Overflow
Title source: ruleDescription
Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers to execute arbitrary code via a long USER command.
Exploits (4)
exploitdb
WORKING POC
VERIFIED
by Metasploit · rubyremotelinux
https://www.exploit-db.com/exploits/16836
exploitdb
WORKING POC
VERIFIED
by K-sPecial · perlremotelinux
https://www.exploit-db.com/exploits/2185
metasploit
WORKING POC
NORMAL
by bannedit, jduck · rubypoclinux
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/pop3/cyrus_pop3d_popsubfolders.rb
References (5)
Scores
EPSS
0.7701
EPSS Percentile
99.0%
Details
Status
published
Products (1)
cyrus/imapd
2.3.2
Published
May 22, 2006
Tracked Since
Feb 18, 2026