CVE
- Id
- 1501
- CVE No.
- CVE-1999-1521
- Status
- Candidate
- Description
- Computalynx CMail 2.4 and CMail 2.3 SP2 SMTP servers are vulnerable to a buffer overflow attack in the MAIL FROM command that may allow a remote attacker to execute arbitrary code on the server.
- Phase
- Proposed (20010912)
- Votes
- ACCEPT(1) Frech | NOOP(4) Christey, Cole, Foat, Wall
- Comments
- Christey> Remove "attack" from description and slightly rewrite. | Christey> ADDREF BUGTRAQ:19991029 Vulnerability in CMail SMTP Server Version 2.4: Remotely exploitable buffer | URL:URL:http://www.securityfocus.com/archive/1/32573 | ADDREF BUGTRAQ:19990616 C-Mail SMTP Server Remote Buffer Overflow Exploit | URL:http://online.securityfocus.com/archive/1/15524 | | Note: this last post exploits an overflow through VRFY | instead of MAIL FROM. However, CD:SF-LOC suggests merging two | issues of the same type that are in the same versions. | | ADDREF BUGTRAQ:19990526 Multiple Web Interface Security Holes | URL:http://marc.theaimsgroup.com/?l=bugtraq&m=92774425211457&w=2