Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
–

112 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (10)6.4%—University OF Washington AlpineUniversity OF Washington Imap Toolkit10/11/200816/6/2026
Multiple stack-based buffer overflows in (1) University of Washington IMAP Toolkit 2002 through 2007c, (2) University of Washington Alpine 2.00 and earlier, and (3) Panda IMAP allow (a) local users to gain privileges by specifying a long folder extension argument on the command line to the tmail or dmail program; and…
ModificadaAlta (10)4.7%—Double Precision Incorporated Courier-imap24/4/200716/6/2026
Eval injection vulnerability in (1) courier-imapd.indirect and (2) courier-pop3d.indirect in Courier-IMAP before 4.0.6-r2, and 4.1.x before 4.1.2-r1, on Gentoo Linux allows remote attackers to execute arbitrary commands via the XMAILDIR variable, related to the LOGINRUN variable.
ModificadaAlta (10)56%💥 ExploitAtrium Software Mercur ImapdAtrium Software Mercur Messaging 200521/3/200716/6/2026
Stack-based buffer overflow in Atrium MERCUR IMAPD allows remote attackers to have an unknown impact via a certain SUBSCRIBE command.
ModificadaAlta (10)16%💥 ExploitAtrium Software Mercur Imapd21/3/200716/6/2026
Multiple integer signedness errors in the NTLM implementation in Atrium MERCUR IMAPD (mcrimap4.exe) 5.00.14, with SP4, allow remote attackers to execute arbitrary code via a long NTLMSSP argument that triggers a stack-based buffer overflow.
ModificadaMedia (5.1)53%💥 ExploitCyrus Imapd22/5/200616/6/2026
Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers to execute arbitrary code via a long USER command.
ModificadaMedia (5)5.8%💥 ExploitQualcomm Worldmail Imap Server18/11/200516/6/2026
Directory traversal vulnerability in Qualcomm WorldMail IMAP Server allows remote attackers to read arbitrary email messages via ".." sequences in the SELECT command.
ModificadaAlta (7.5)12%💥 ExploitUp-imapproxy14/10/200516/6/2026
Format string vulnerability in the ParseBannerAndCapability function in main.c for up-imapproxy 1.2.3 and 1.2.4 allows remote IMAP servers to execute arbitrary code via format string specifiers in a banner or capability line.
ModificadaAlta (7.5)8.5%—University OF Washington Uw-imap13/10/200516/6/2026
Buffer overflow in the mail_valid_net_parse_work function in mail.c for Washington's IMAP Server (UW-IMAP) before imap-2004g allows remote attackers to execute arbitrary code via a mailbox name containing a single double-quote (") character without a closing quote, which causes bytes after the double-quote to be…
ModificadaAlta (10)16%—Mailenable Imapd2/5/200516/6/2026
Buffer overflow in MailEnable Imapd (MEIMAP.exe) allows remote attackers to execute arbitrary code via a long LOGIN command.
ModificadaAlta (7.5)5.1%—University OF Washington Uw-imap2/5/200516/6/2026
A logic error in the CRAM-MD5 code for the University of Washington IMAP (UW-IMAP) server, when Challenge-Response Authentication Mechanism with MD5 (CRAM-MD5) is enabled, does not properly enforce all the required conditions for successful authentication, which allows remote attackers to authenticate as arbitrary…
ModificadaAlta (7.5)4.2%—Cyrus Imapd2/5/200516/6/2026
Multiple buffer overflows in Cyrus IMAPd before 2.2.11 may allow attackers to execute arbitrary code via (1) an off-by-one error in the imapd annotate extension, (2) an off-by-one error in "cached header handling," (3) a stack-based buffer overflow in fetchnews, or (4) a stack-based buffer overflow in imapd.
ModificadaMedia (6.4)2.1%—Imap Proxy1/3/200516/6/2026
Multiple integer signedness errors in (1) imapcommon.c, (2) main.c, (3) request.c, and (4) select.c for up-imapproxy IMAP proxy 1.2.2 allow remote attackers to cause a denial of service (server crash) and possibly leak sensitive information via certain literal values that are not properly handled when using the…
ModificadaAlta (10)5.8%—Carnegie Mellon University Cyrus Imap ServerOpenpkgConectiva LinuxRedhat Fedora Core+210/1/200516/6/2026
The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary code via certain commands such as (1) "body[p", (2) "binary[p", or (3) "binary[p") that cause an index increment error that leads to an out-of-bounds memory corruption.
ModificadaAlta (10)6.0%—Carnegie Mellon University Cyrus Imap ServerOpenpkgConectiva LinuxRedhat Fedora Core+210/1/200516/6/2026
The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary code via a certain command ("body[p") that is treated as a different command ("body.peek") and causes an index increment error that leads to an out-of-bounds memory corruption.
ModificadaAlta (10)5.2%—Carnegie Mellon University Cyrus Imap ServerRedhat Fedora CoreUbuntu Linux10/1/200516/6/2026
Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote attackers to execute arbitrary code via the username.
ModificadaAlta (10)5.2%—Carnegie Mellon University Cyrus Imap ServerRedhat Fedora CoreUbuntu Linux10/1/200516/6/2026
Buffer overflow in proxyd for Cyrus IMAP Server 2.2.9 and earlier, with the imapmagicplus option enabled, may allow remote attackers to execute arbitrary code, a different vulnerability than CVE-2004-1011.
ModificadaAlta (10)5.8%—Carnegie Mellon University Cyrus Imap ServerOpenpkgConectiva LinuxRedhat Fedora Core+210/1/200516/6/2026
Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execute arbitrary code via a long (1) PROXY or (2) LOGIN command, a different vulnerability than CVE-2004-1015.
ModificadaAlta (7.5)11%💥 ExploitInter7 Courier-imap20/10/200416/6/2026
Format string vulnerability in the auth_debug function in Courier-IMAP 1.6.0 through 2.2.1 and 3.x through 3.0.3, when login debugging (DEBUG_LOGIN) is enabled, allows remote attackers to execute arbitrary code.
ModificadaAlta (7.5)17%💥 ExploitCarnegie Mellon University Cyrus Imap Server14/6/200416/6/2026
Integer overflow in imapparse.c for Cyrus IMAP server 1.4 and 2.1.10 allows remote attackers to execute arbitrary code via a large length value that facilitates a buffer overflow attack, a different vulnerability than CVE-2002-1347.
ModificadaAlta (7.5)3.3%—Double Precision Incorporated Courier MTADouble Precision Incorporated SqwebmailInter7 Courier-imapGentoo Linux15/4/200416/6/2026
Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.0 may allow remote attackers to execute arbitrary code "when Unicode character is out of BMP range."
ModificadaAlta (7.5)2.7%—University OF Washington C-clientUniversity OF Washington Imap-2002bUniversity OF Washington Pine16/6/200316/6/2026
c-client IMAP Client, as used in imap-2002b and Pine 4.53, allows remote malicious IMAP servers to cause a denial of service (crash) and possibly execute arbitrary code via certain large (1) literal and (2) mailbox size values that cause either integer signedness errors or integer overflow errors.
ModificadaAlta (7.5)1.2%—Double Precision Incorporated Courier MTAInter7 Courier-imap19/2/200316/6/2026
SQL injection vulnerability in the PostgreSQL auth module for courier 0.40 and earlier allows remote attackers to execute SQL code via the user name.
ModificadaBaja (2.1)0.34%—University OF Washington Uw-imap31/12/200216/6/2026
The default configuration of University of Washington IMAP daemon (wu-imapd), when running on a system that does not allow shell access, allows a local user with a valid IMAP account to read arbitrary files as that user.
ModificadaCrítica (9.8)7.1%—Cyrusimap Cyrus SaslApple MAC OS XApple MAC OS X Server18/12/200216/6/2026
Multiple buffer overflows in Cyrus SASL library 2.1.9 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) long inputs during user name canonicalization, (2) characters that need to be escaped during LDAP authentication using saslauthd, or (3) an off-by-one error…
ModificadaAlta (7.5)19%💥 ExploitUniversity OF Washington Uw-imap25/6/200216/6/2026
Buffer overflow in University of Washington imap server (uw-imapd) imap-2001 (imapd 2001.315) and imap-2001a (imapd 2001.315) with legacy RFC 1730 support, and imapd 2000.287 and earlier, allows remote authenticated users to execute arbitrary code via a long BODY request.
Orbitaley — Vulnerabilidades