CVE-2007-3925

Ipswitch Imail Server < 2006.2 - Memory Corruption

Title source: rule

Description

Multiple buffer overflows in the IMAP service (imapd32.exe) in Ipswitch IMail Server 2006 before 2006.21 allow remote authenticated users to execute arbitrary code via the (1) Search or (2) Search Charset command.

Exploits (3)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/16487
exploitdb WORKING POC VERIFIED
by ZhenHan.Liu · perlremotewindows
https://www.exploit-db.com/exploits/4223
metasploit WORKING POC NORMAL
by MC · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/imap/ipswitch_search.rb

Scores

EPSS 0.9036
EPSS Percentile 99.6%

Details

CWE
CWE-119
Status published
Products (2)
ipswitch/imail_server < 2006.2
ipswitch/ipswitch_collaboration_suite < 2006.2
Published Jul 21, 2007
Tracked Since Feb 18, 2026