CVE-2006-2646

MDaemon - Remote Code Execution via Long A0001 Argument

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2006-2646. PoCs published by kcope.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Alt-N MDaemon IMAP Server. It attempts to execute arbitrary code by overflowing a buffer with a crafted payload containing NOPs, shellcode, and a return address.

Description

Buffer overflow in Alt-N MDaemon, possibly 9.0.1 and earlier, allows remote attackers to execute arbitrary code via a long A0001 argument that begins with a '"' (double quote).

Exploits (1)

exploitdb WORKING POC VERIFIED
by kcope · perldoswindows
https://www.exploit-db.com/exploits/27914

This exploit targets a buffer overflow vulnerability in Alt-N MDaemon IMAP Server. It attempts to execute arbitrary code by overflowing a buffer with a crafted payload containing NOPs, shellcode, and a return address.

Classification
Working Poc 80%
Attack Type
Rce
Complexity
Moderate
Reliability
Theoretical
Target: Alt-N MDaemon IMAP Server (version unspecified)
No auth needed
Prerequisites: Network access to the target IMAP server · Ability to send crafted IMAP commands
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/18129
Exploit vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1016167
Mailing List mailing-list x_refsource_fulldisc
http://marc.info/?l=full-disclosure&m=114882270912151&w=2

Scores

EPSS 0.0447
EPSS Percentile 90.2%

Details

Status published
Products (39)
alt-n/mdaemon 2.8
alt-n/mdaemon 2.8.5.0
alt-n/mdaemon 3.0.3
alt-n/mdaemon 3.0.4
alt-n/mdaemon 3.1.1
alt-n/mdaemon 3.1.2
alt-n/mdaemon 3.1_beta
alt-n/mdaemon 3.5.0
alt-n/mdaemon 3.5.1
alt-n/mdaemon 3.5.4 (3 CPE variants)
... and 29 more
Published May 30, 2006
Tracked Since Feb 18, 2026