EIP-2026-103889
PRE-CVECyrus IMAPD 2.3.2 - 'pop3d' Remote Buffer Overflow (2)
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-103889. PoCs published by bannedit.
AI-analyzed exploit summary This Ruby exploit targets a stack-based buffer overflow in cyrus-imapd's pop3d service, leveraging a write-anywhere condition to overwrite the GOT table with shellcode, bypassing VA randomization. It includes a Metasploit bind shellcode for remote command execution on port 4444.
Description
Cyrus IMAPD 2.3.2 - 'pop3d' Remote Buffer Overflow (2)
Exploits (1)
This Ruby exploit targets a stack-based buffer overflow in cyrus-imapd's pop3d service, leveraging a write-anywhere condition to overwrite the GOT table with shellcode, bypassing VA randomization. It includes a Metasploit bind shellcode for remote command execution on port 4444.