axigen 1.2.6 through 2.0.0b1 does not properly parse login credentials, which allows remote attackers to cause a denial of service (NULL dereference and application crash) via a base64-encoded *x00 sequence on the imap port (143/tcp).
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Axigen_mail_server | Gecad_technologies | 1.2.6 (including) | 1.2.6 (including) |
Axigen_mail_server | Gecad_technologies | 2.0.0b1 (including) | 2.0.0b1 (including) |