CVE-2007-3927

Ipswitch IMail Server < 2006.21 - Buffer Overflow in Imailsec

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2007-3927. PoCs published by ZhenHan.Liu.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Imail 2006 (9.10) via the SUBSCRIBE IMAP command. It delivers a reverse shell payload (win32_bind) on port 22, achieving remote code execution.

Description

Multiple buffer overflows in Ipswitch IMail Server 2006 before 2006.21 (1) allow remote attackers to execute arbitrary code via unspecified vectors in Imailsec and (2) allow attackers to have an unknown impact via an unspecified vector related to "subscribe."

Exploits (1)

exploitdb WORKING POC VERIFIED
by ZhenHan.Liu · perlremotewindows
https://www.exploit-db.com/exploits/4228

This exploit targets a buffer overflow vulnerability in Imail 2006 (9.10) via the SUBSCRIBE IMAP command. It delivers a reverse shell payload (win32_bind) on port 22, achieving remote code execution.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Imail 2006 (9.10), imap4d32.exe (6.8.8.1)
Auth required
Prerequisites: Valid IMAP credentials · Network access to IMAP port (143)
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (9)

Core 9
Core References
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/2574
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/24962
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/35505
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/45819
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/45818
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1018421
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/35504
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/26123

Scores

EPSS 0.7229
EPSS Percentile 98.8%

Details

Status published
Products (2)
ipswitch/imail_server < 2006.2
ipswitch/ipswitch_collaboration_suite < 2006.2
Published Jul 21, 2007
Tracked Since Feb 18, 2026