Vulnerabilities (CVE)

Filtered by vendor Atrium Software Subscribe
Filtered by product Mercur Mailserver
Total 6 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2003-1322 1 Atrium Software 1 Mercur Mailserver 2024-11-20 10.0 HIGH N/A
Multiple stack-based buffer overflows in Atrium MERCUR IMAPD in MERCUR Mailserver before 4.2.15.0 allow remote attackers to execute arbitrary code via a long (1) EXAMINE, (2) DELETE, (3) SUBSCRIBE, (4) RENAME, (5) UNSUBSCRIBE, (6) LIST, (7) LSUB, (8) STATUS, (9) LOGIN, (10) CREATE, or (11) SELECT command.
CVE-2003-1177 1 Atrium Software 1 Mercur Mailserver 2024-11-20 7.5 HIGH N/A
Buffer overflow in the base64 decoder in MERCUR Mailserver 4.2 before SP3a allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long (1) AUTH command to the POP3 server or (2) AUTHENTICATE command to the IMAP server.
CVE-2002-1073 1 Atrium Software 1 Mercur Mailserver 2024-11-20 7.5 HIGH N/A
Buffer overflow in the control service for MERCUR Mailserver 4.2 allows remote attackers to execute arbitrary code via a long password.
CVE-2000-0318 1 Atrium Software 1 Mercur Mailserver 2024-11-20 7.5 HIGH N/A
Atrium Mercur Mail Server 3.2 allows local attackers to read other user's email and create arbitrary files via a dot dot (..) attack.
CVE-2000-0239 1 Atrium Software 3 Mercur Imap4 Server, Mercur Mailserver, Mercur Pop3 Server 2024-11-20 5.0 MEDIUM N/A
Buffer overflow in the MERCUR WebView WebMail server allows remote attackers to cause a denial of service via a long mail_user parameter in the GET request.
CVE-2000-0198 1 Atrium Software 3 Mercur Imap4 Server, Mercur Mailserver, Mercur Pop3 Server 2024-11-20 5.0 MEDIUM N/A
Buffer overflow in POP3 and IMAP servers in the MERCUR mail server suite allows remote attackers to cause a denial of service.