CVE-2006-2502

Cyrus Imapd - Buffer Overflow

Title source: rule

Description

Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers to execute arbitrary code via a long USER command.

Exploits (4)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotelinux
https://www.exploit-db.com/exploits/16836
exploitdb WORKING POC VERIFIED
by K-sPecial · perlremotelinux
https://www.exploit-db.com/exploits/2185
exploitdb WORKING POC VERIFIED
by kingcope · cremotelinux
https://www.exploit-db.com/exploits/1813
metasploit WORKING POC NORMAL
by bannedit, jduck · rubypoclinux
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/pop3/cyrus_pop3d_popsubfolders.rb

Scores

EPSS 0.7701
EPSS Percentile 99.0%

Details

Status published
Products (1)
cyrus/imapd 2.3.2
Published May 22, 2006
Tracked Since Feb 18, 2026