CVE-2003-0487

Multiple buffer overflows in Kerio MailServer 5.6.3 allow remote authenticated users to cause a denial of service and possibly execute arbitrary code via (1) a long showuser parameter in the do_subscribe module, (2) a long folder parameter in the add_acl module, (3) a long folder parameter in the list module, and (4) a long user parameter in the do_map module.
Configurations

Configuration 1 (hide)

cpe:2.3:a:kerio:kerio_mailserver:5.6.3:*:*:*:*:*:*:*

History

20 Nov 2024, 23:44

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=105596982503760&w=2 - () http://marc.info/?l=bugtraq&m=105596982503760&w=2 -
References () http://nautopia.org/vulnerabilidades/kerio_mailserver.htm - Exploit, Vendor Advisory () http://nautopia.org/vulnerabilidades/kerio_mailserver.htm - Exploit, Vendor Advisory
References () http://www.securityfocus.com/bid/7967 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/bid/7967 - Exploit, Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/12368 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/12368 -

Information

Published : 2003-08-07 04:00

Updated : 2024-11-20 23:44


NVD link : CVE-2003-0487

Mitre link : CVE-2003-0487

CVE.ORG link : CVE-2003-0487


JSON object : View

Products Affected

kerio

  • kerio_mailserver