Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
112 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (10) | 6.4% | — | University OF Washington AlpineUniversity OF Washington Imap Toolkit | 10/11/2008 | 16/6/2026 | Multiple stack-based buffer overflows in (1) University of Washington IMAP Toolkit 2002 through 2007c, (2) University of Washington Alpine 2.00 and earlier, and (3) Panda IMAP allow (a) local users to gain privileges by specifying a long folder extension argument on the command line to the tmail or dmail program; and… | |
| Modificada | Alta (10) | 4.7% | — | Double Precision Incorporated Courier-imap | 24/4/2007 | 16/6/2026 | Eval injection vulnerability in (1) courier-imapd.indirect and (2) courier-pop3d.indirect in Courier-IMAP before 4.0.6-r2, and 4.1.x before 4.1.2-r1, on Gentoo Linux allows remote attackers to execute arbitrary commands via the XMAILDIR variable, related to the LOGINRUN variable. | |
| Modificada | Alta (10) | 56% | 💥 Exploit | Atrium Software Mercur ImapdAtrium Software Mercur Messaging 2005 | 21/3/2007 | 16/6/2026 | Stack-based buffer overflow in Atrium MERCUR IMAPD allows remote attackers to have an unknown impact via a certain SUBSCRIBE command. | |
| Modificada | Alta (10) | 16% | 💥 Exploit | Atrium Software Mercur Imapd | 21/3/2007 | 16/6/2026 | Multiple integer signedness errors in the NTLM implementation in Atrium MERCUR IMAPD (mcrimap4.exe) 5.00.14, with SP4, allow remote attackers to execute arbitrary code via a long NTLMSSP argument that triggers a stack-based buffer overflow. | |
| Modificada | Media (5.1) | 53% | 💥 Exploit | Cyrus Imapd | 22/5/2006 | 16/6/2026 | Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers to execute arbitrary code via a long USER command. | |
| Modificada | Media (5) | 5.8% | 💥 Exploit | Qualcomm Worldmail Imap Server | 18/11/2005 | 16/6/2026 | Directory traversal vulnerability in Qualcomm WorldMail IMAP Server allows remote attackers to read arbitrary email messages via ".." sequences in the SELECT command. | |
| Modificada | Alta (7.5) | 12% | 💥 Exploit | Up-imapproxy | 14/10/2005 | 16/6/2026 | Format string vulnerability in the ParseBannerAndCapability function in main.c for up-imapproxy 1.2.3 and 1.2.4 allows remote IMAP servers to execute arbitrary code via format string specifiers in a banner or capability line. | |
| Modificada | Alta (7.5) | 8.5% | — | University OF Washington Uw-imap | 13/10/2005 | 16/6/2026 | Buffer overflow in the mail_valid_net_parse_work function in mail.c for Washington's IMAP Server (UW-IMAP) before imap-2004g allows remote attackers to execute arbitrary code via a mailbox name containing a single double-quote (") character without a closing quote, which causes bytes after the double-quote to be… | |
| Modificada | Alta (10) | 16% | — | Mailenable Imapd | 2/5/2005 | 16/6/2026 | Buffer overflow in MailEnable Imapd (MEIMAP.exe) allows remote attackers to execute arbitrary code via a long LOGIN command. | |
| Modificada | Alta (7.5) | 5.1% | — | University OF Washington Uw-imap | 2/5/2005 | 16/6/2026 | A logic error in the CRAM-MD5 code for the University of Washington IMAP (UW-IMAP) server, when Challenge-Response Authentication Mechanism with MD5 (CRAM-MD5) is enabled, does not properly enforce all the required conditions for successful authentication, which allows remote attackers to authenticate as arbitrary… | |
| Modificada | Alta (7.5) | 4.2% | — | Cyrus Imapd | 2/5/2005 | 16/6/2026 | Multiple buffer overflows in Cyrus IMAPd before 2.2.11 may allow attackers to execute arbitrary code via (1) an off-by-one error in the imapd annotate extension, (2) an off-by-one error in "cached header handling," (3) a stack-based buffer overflow in fetchnews, or (4) a stack-based buffer overflow in imapd. | |
| Modificada | Media (6.4) | 2.1% | — | Imap Proxy | 1/3/2005 | 16/6/2026 | Multiple integer signedness errors in (1) imapcommon.c, (2) main.c, (3) request.c, and (4) select.c for up-imapproxy IMAP proxy 1.2.2 allow remote attackers to cause a denial of service (server crash) and possibly leak sensitive information via certain literal values that are not properly handled when using the… | |
| Modificada | Alta (10) | 5.8% | — | Carnegie Mellon University Cyrus Imap ServerOpenpkgConectiva LinuxRedhat Fedora Core+2 | 10/1/2005 | 16/6/2026 | The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary code via certain commands such as (1) "body[p", (2) "binary[p", or (3) "binary[p") that cause an index increment error that leads to an out-of-bounds memory corruption. | |
| Modificada | Alta (10) | 6.0% | — | Carnegie Mellon University Cyrus Imap ServerOpenpkgConectiva LinuxRedhat Fedora Core+2 | 10/1/2005 | 16/6/2026 | The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary code via a certain command ("body[p") that is treated as a different command ("body.peek") and causes an index increment error that leads to an out-of-bounds memory corruption. | |
| Modificada | Alta (10) | 5.2% | — | Carnegie Mellon University Cyrus Imap ServerRedhat Fedora CoreUbuntu Linux | 10/1/2005 | 16/6/2026 | Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote attackers to execute arbitrary code via the username. | |
| Modificada | Alta (10) | 5.2% | — | Carnegie Mellon University Cyrus Imap ServerRedhat Fedora CoreUbuntu Linux | 10/1/2005 | 16/6/2026 | Buffer overflow in proxyd for Cyrus IMAP Server 2.2.9 and earlier, with the imapmagicplus option enabled, may allow remote attackers to execute arbitrary code, a different vulnerability than CVE-2004-1011. | |
| Modificada | Alta (10) | 5.8% | — | Carnegie Mellon University Cyrus Imap ServerOpenpkgConectiva LinuxRedhat Fedora Core+2 | 10/1/2005 | 16/6/2026 | Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execute arbitrary code via a long (1) PROXY or (2) LOGIN command, a different vulnerability than CVE-2004-1015. | |
| Modificada | Alta (7.5) | 11% | 💥 Exploit | Inter7 Courier-imap | 20/10/2004 | 16/6/2026 | Format string vulnerability in the auth_debug function in Courier-IMAP 1.6.0 through 2.2.1 and 3.x through 3.0.3, when login debugging (DEBUG_LOGIN) is enabled, allows remote attackers to execute arbitrary code. | |
| Modificada | Alta (7.5) | 17% | 💥 Exploit | Carnegie Mellon University Cyrus Imap Server | 14/6/2004 | 16/6/2026 | Integer overflow in imapparse.c for Cyrus IMAP server 1.4 and 2.1.10 allows remote attackers to execute arbitrary code via a large length value that facilitates a buffer overflow attack, a different vulnerability than CVE-2002-1347. | |
| Modificada | Alta (7.5) | 3.3% | — | Double Precision Incorporated Courier MTADouble Precision Incorporated SqwebmailInter7 Courier-imapGentoo Linux | 15/4/2004 | 16/6/2026 | Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.0 may allow remote attackers to execute arbitrary code "when Unicode character is out of BMP range." | |
| Modificada | Alta (7.5) | 2.7% | — | University OF Washington C-clientUniversity OF Washington Imap-2002bUniversity OF Washington Pine | 16/6/2003 | 16/6/2026 | c-client IMAP Client, as used in imap-2002b and Pine 4.53, allows remote malicious IMAP servers to cause a denial of service (crash) and possibly execute arbitrary code via certain large (1) literal and (2) mailbox size values that cause either integer signedness errors or integer overflow errors. | |
| Modificada | Alta (7.5) | 1.2% | — | Double Precision Incorporated Courier MTAInter7 Courier-imap | 19/2/2003 | 16/6/2026 | SQL injection vulnerability in the PostgreSQL auth module for courier 0.40 and earlier allows remote attackers to execute SQL code via the user name. | |
| Modificada | Baja (2.1) | 0.34% | — | University OF Washington Uw-imap | 31/12/2002 | 16/6/2026 | The default configuration of University of Washington IMAP daemon (wu-imapd), when running on a system that does not allow shell access, allows a local user with a valid IMAP account to read arbitrary files as that user. | |
| Modificada | Crítica (9.8) | 7.1% | — | Cyrusimap Cyrus SaslApple MAC OS XApple MAC OS X Server | 18/12/2002 | 16/6/2026 | Multiple buffer overflows in Cyrus SASL library 2.1.9 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) long inputs during user name canonicalization, (2) characters that need to be escaped during LDAP authentication using saslauthd, or (3) an off-by-one error… | |
| Modificada | Alta (7.5) | 19% | 💥 Exploit | University OF Washington Uw-imap | 25/6/2002 | 16/6/2026 | Buffer overflow in University of Washington imap server (uw-imapd) imap-2001 (imapd 2001.315) and imap-2001a (imapd 2001.315) with legacy RFC 1730 support, and imapd 2000.287 and earlier, allows remote authenticated users to execute arbitrary code via a long BODY request. |