Buffer overflow in the POP3 server in 1st Class Mail Server 4.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an APOP USER command with a long second parameter (digest).
                
            References
                    | Link | Resource | 
|---|---|
| http://secunia.com/advisories/11029 | Vendor Advisory | 
| http://securitytracker.com/id?1009279 | |
| http://www.digiti.be/jeffosz/advisories/1stclasspop3.txt | Exploit Vendor Advisory | 
| http://www.osvdb.org/4129 | |
| http://www.securityfocus.com/bid/9794 | Exploit | 
| http://www.zone-h.org/advisories/read/id=4047 | Exploit Vendor Advisory | 
| https://exchange.xforce.ibmcloud.com/vulnerabilities/15314 | |
| http://secunia.com/advisories/11029 | Vendor Advisory | 
| http://securitytracker.com/id?1009279 | |
| http://www.digiti.be/jeffosz/advisories/1stclasspop3.txt | Exploit Vendor Advisory | 
| http://www.osvdb.org/4129 | |
| http://www.securityfocus.com/bid/9794 | Exploit | 
| http://www.zone-h.org/advisories/read/id=4047 | Exploit Vendor Advisory | 
| https://exchange.xforce.ibmcloud.com/vulnerabilities/15314 | 
Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    20 Nov 2024, 23:53
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://secunia.com/advisories/11029 - Vendor Advisory | |
| References | () http://securitytracker.com/id?1009279 - | |
| References | () http://www.digiti.be/jeffosz/advisories/1stclasspop3.txt - Exploit, Vendor Advisory | |
| References | () http://www.osvdb.org/4129 - | |
| References | () http://www.securityfocus.com/bid/9794 - Exploit | |
| References | () http://www.zone-h.org/advisories/read/id=4047 - Exploit, Vendor Advisory | |
| References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/15314 - | 
Information
                Published : 2004-12-31 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2004-2375
Mitre link : CVE-2004-2375
CVE.ORG link : CVE-2004-2375
JSON object : View
Products Affected
                1st_class_internet_solutions
- 1st_class_mail_server
CWE
                