Vulnerabilities (CVE)

Filtered by vendor Alt-n Subscribe
Total 40 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2003-1470 1 Alt-n 1 Mdaemon 2023-12-10 9.0 HIGH N/A
Buffer overflow in IMAP service in MDaemon 6.7.5 and earlier allows remote authenticated users to cause a denial of service (crash) and execute arbitrary code via a CREATE command with a long mailbox name.
CVE-2003-1471 1 Alt-n 1 Mdaemon 2023-12-10 6.3 MEDIUM N/A
MDaemon POP server 6.0.7 and earlier allows remote authenticated users to cause a denial of service (crash) via a (1) DELE or (2) UIDL with a negative number.
CVE-2001-0064 1 Alt-n 1 Mdaemon 2023-12-10 5.0 MEDIUM N/A
Webconfig, IMAP, and other services in MDaemon 3.5.0 and earlier allows remote attackers to cause a denial of service via a long URL terminated by a "\r\n" string.
CVE-2000-1021 1 Alt-n 1 Mdaemon 2023-12-10 7.5 HIGH N/A
Heap overflow in WebConfig in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.
CVE-2000-0501 1 Alt-n 1 Mdaemon 2023-12-10 2.6 LOW N/A
Race condition in MDaemon 2.8.5.0 POP server allows local users to cause a denial of service by entering a UIDL command and quickly exiting the server.
CVE-2002-1738 1 Alt-n 1 Mdaemon 2023-12-10 5.0 MEDIUM N/A
Alt-N Technologies MDaemon 5.0.5.0 and earlier creates a default MDaemon mail account with a password of MServer, which could allow remote attackers to send anonymous email.
CVE-2002-1539 1 Alt-n 1 Mdaemon 2023-12-10 5.0 MEDIUM N/A
Buffer overflow in MDaemon POP server 6.0.7 and earlier allows remote authenticated users to cause a denial of service via long (1) DELE or (2) UIDL arguments.
CVE-2004-1546 1 Alt-n 1 Mdaemon 2023-12-10 5.0 MEDIUM N/A
Multiple buffer overflows in MDaemon 6.5.1 allow remote attackers to cause a denial of service (application crash) via a long (1) SAML, SOML, SEND, or MAIL command to the SMTP server or (2) LIST command to the IMAP server.
CVE-2000-0716 1 Alt-n 1 Mdaemon 2023-12-10 2.6 LOW N/A
WorldClient email client in MDaemon 2.8 includes the session ID in the referer field of an HTTP request when the user clicks on a URL, which allows the visited web site to hijack the session ID and read the user's email.
CVE-2002-1740 1 Alt-n 2 Mdaemon, Worldclient 2023-12-10 2.1 LOW N/A
Buffer overflow in WorldClient.cgi in WorldClient in Alt-N Technologies MDaemon 5.0.5.0 and earlier allows local users to execute arbitrary code via a long folder name (NewFolder parameter).
CVE-2003-1463 2 Alt-n, Microsoft 2 Webadmin, All Windows 2023-12-10 3.5 LOW N/A
Absolute path traversal vulnerability in Alt-N Technologies WebAdmin 2.0.0 through 2.0.2 allows remote attackers with administrator privileges to (1) determine the installation path by reading the contents of the Name parameter in a link, and (2) read arbitrary files via an absolute path in the Name parameter.
CVE-2003-1200 1 Alt-n 1 Mdaemon 2023-12-10 7.5 HIGH N/A
Stack-based buffer overflow in FORM2RAW.exe in Alt-N MDaemon 6.5.2 through 6.8.5 allows remote attackers to execute arbitrary code via a long From parameter to Form2Raw.cgi.
CVE-2000-0660 1 Alt-n 1 Worldclient 2023-12-10 5.0 MEDIUM N/A
The WDaemon web server for WorldClient 2.1 allows remote attackers to read arbitrary files via a .. (dot dot) attack.
CVE-2001-0584 1 Alt-n 1 Mdaemon 2023-12-10 2.1 LOW N/A
IMAP server in Alt-N Technologies MDaemon 3.5.6 allows a local user to cause a denial of service (hang) via long (1) SELECT or (2) EXAMINE commands.
CVE-2001-0583 1 Alt-n 1 Mdaemon 2023-12-10 5.0 MEDIUM N/A
Alt-N Technologies MDaemon 3.5.4 allows a remote attacker to create a denial of service via the URL request of a MS-DOS device (such as GET /aux) to (1) the Worldclient service at port 3000, or (2) the Webconfig service at port 3001.
CVE-2001-0104 1 Alt-n 1 Mdaemon 2023-12-10 7.2 HIGH N/A
MDaemon Pro 3.5.1 and earlier allows local users to bypass the "lock server" security setting by pressing the Cancel button at the password prompt, then pressing the enter key.
CVE-2000-0399 1 Alt-n 1 Mdaemon 2023-12-10 5.0 MEDIUM N/A
Buffer overflow in MDaemon POP server allows remote attackers to cause a denial of service via a long user name.
CVE-2002-1741 1 Alt-n 1 Worldclient 2023-12-10 7.2 HIGH N/A
Directory traversal vulnerability in WorldClient.cgi in WorldClient for Alt-N Technologies MDaemon 5.0.5.0 and earlier allows local users to delete arbitrary files via a ".." (dot dot) in the Attachments parameter.
CVE-2003-0471 1 Alt-n 1 Webadmin 2023-12-10 7.5 HIGH N/A
Buffer overflow in WebAdmin.exe for WebAdmin allows remote attackers to execute arbitrary code via an HTTP request to WebAdmin.dll with a long USER argument.
CVE-2000-1020 1 Alt-n 1 Mdaemon 2023-12-10 7.5 HIGH N/A
Heap overflow in Worldclient in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.