Vulnerabilities (CVE)

Filtered by vendor Alt-n Subscribe
Filtered by product Mdaemon
Total 28 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2001-0064 1 Alt-n 1 Mdaemon 2025-04-03 5.0 MEDIUM N/A
Webconfig, IMAP, and other services in MDaemon 3.5.0 and earlier allows remote attackers to cause a denial of service via a long URL terminated by a "\r\n" string.
CVE-2003-1470 1 Alt-n 1 Mdaemon 2025-04-03 9.0 HIGH N/A
Buffer overflow in IMAP service in MDaemon 6.7.5 and earlier allows remote authenticated users to cause a denial of service (crash) and execute arbitrary code via a CREATE command with a long mailbox name.
CVE-2006-2646 1 Alt-n 1 Mdaemon 2025-04-03 7.5 HIGH N/A
Buffer overflow in Alt-N MDaemon, possibly 9.0.1 and earlier, allows remote attackers to execute arbitrary code via a long A0001 argument that begins with a '"' (double quote).
CVE-2004-1546 1 Alt-n 1 Mdaemon 2025-04-03 5.0 MEDIUM N/A
Multiple buffer overflows in MDaemon 6.5.1 allow remote attackers to cause a denial of service (application crash) via a long (1) SAML, SOML, SEND, or MAIL command to the SMTP server or (2) LIST command to the IMAP server.
CVE-2005-4266 1 Alt-n 2 Mdaemon, Worldclient 2025-04-03 7.5 HIGH N/A
WorldClient.dll in Alt-N MDaemon and WorldClient 8.1.3 trusts a Session parameter that contains a randomly generated session ID that is associated with a username, which allows remote attackers to perform actions as other users by guessing or sniffing the random value.
CVE-2006-0925 1 Alt-n 1 Mdaemon 2025-04-03 5.0 MEDIUM N/A
Format string vulnerability in the IMAP4rev1 server in Alt-N MDaemon 8.1.1 and possibly 8.1.4 allows remote attackers to cause a denial of service (CPU consumption) by creating and then listing folders whose names contain format string specifiers.
CVE-2000-1020 1 Alt-n 1 Mdaemon 2025-04-03 7.5 HIGH N/A
Heap overflow in Worldclient in Mdaemon 3.1.1 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long URL.
CVE-2002-1738 1 Alt-n 1 Mdaemon 2025-04-03 5.0 MEDIUM N/A
Alt-N Technologies MDaemon 5.0.5.0 and earlier creates a default MDaemon mail account with a password of MServer, which could allow remote attackers to send anonymous email.