CVE-2007-6101

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
23/11/2007
Last modified:
29/07/2017

Description

Ability Mail Server before 2.61 allows remote authenticated users to cause a denial of service (daemon crash) via (1) malformed number list ranges in unspecified IMAP commands, and possibly (2) a blank string in unspecified messages.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:code-crafters:ability_mail_server:1.18:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.01b:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.02b:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.03b:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.04b:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.05b:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.10:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.11:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.12:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.13:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.14:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.15:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.16:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.17:*:*:*:*:*:*:*
cpe:2.3:a:code-crafters:ability_mail_server:2.18:*:*:*:*:*:*:*