Multiple stack-based buffer overflows in the IMAP server in IMail 8.12 and 8.13 in Ipswitch Collaboration Suite (ICS), and other versions before IMail Server 8.2 Hotfix 2, allow remote attackers to execute arbitrary code via a LOGIN command with (1) a long username argument or (2) a long username argument that begins with a special character.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Imail | Ipswitch | 8.12 (including) | 8.12 (including) |
Imail | Ipswitch | 8.13 (including) | 8.13 (including) |
Imail_server | Ipswitch | * | 8.2_hotfix_2 (including) |
Ipswitch_collaboration_suite | Ipswitch | * | * |