CVE-2014-10031
Qualcomm Eudora WorldMail 9.0.333.0 - Remote Code Execution via IMAPd UID Command
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2014-10031. PoCs published by Muhammad Alharmeel.
AI-analyzed exploit summary This exploit targets a pre-authentication buffer overflow in Eudora Qualcomm WorldMail 9.0.333.0 IMAPd service via the UID command. It uses an egghunter and shellcode to spawn a bind shell on port 4444, leveraging SEH overwrite and a short jump to execute the payload.
Description
Buffer overflow in the IMAPd service in Qualcomm Eudora WorldMail 9.0.333.0 allows remote attackers to execute arbitrary code via a long string in a UID command.
Exploits (1)
This exploit targets a pre-authentication buffer overflow in Eudora Qualcomm WorldMail 9.0.333.0 IMAPd service via the UID command. It uses an egghunter and shellcode to spawn a bind shell on port 4444, leveraging SEH overwrite and a short jump to execute the payload.