CVE-2006-4364
MEDIUM 5.0EPSS 56.7%
Multiple heap-based buffer overflows in the POP3 server in Alt-N Technologies MDaemon before 9.0.6 allow remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via long strings that contain '@' characters in the (1) USER and (2) APOP commands.
- CVSS v2.0
- 5.0 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P - EPSS
- 56.65% chance of exploitation in the next 30 days, 99th percentile
- Published
- 2006-08-25
- Updated
- 2024-08-07