CVE-2007-5094

Ipswitch Imail - Memory Corruption

Title source: rule

Description

Heap-based buffer overflow in iaspam.dll in the SMTP Server in Ipswitch IMail Server 8.01 through 8.11 allows remote attackers to execute arbitrary code via a set of four different e-mail messages with a long boundary parameter in a certain malformed Content-Type header line, the string "MIME" by itself on a line in the header, and a long Content-Transfer-Encoding header line.

Exploits (1)

exploitdb WORKING POC VERIFIED
by axis · c++remotewindows
https://www.exploit-db.com/exploits/4438

Scores

EPSS 0.0527
EPSS Percentile 90.0%

Details

CWE
CWE-119
Status published
Products (5)
ipswitch/imail 8.0.3
ipswitch/imail 8.0.5
ipswitch/imail 8.1
ipswitch/imail 8.01
ipswitch/imail 8.11
Published Sep 26, 2007
Tracked Since Feb 18, 2026