← All CVEs

CVE-2006-4364

medium · 5

Multiple heap-based buffer overflows in the POP3 server in Alt-N Technologies MDaemon before 9.0.6 allow remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via long strings that contain '@' characters in the (1) USER and (2) APOP commands.

5
CVSS
56.7%
EPSS (exploit prob.)
99th
EPSS percentile
2006-08-27
Published

AV:N/AC:L/Au:N/C:N/I:N/A:P

Affected products

VendorProductAffected versions
alt-nmdaemon2.8
alt-nmdaemon2.8.5.0
alt-nmdaemon2.71_sp1
alt-nmdaemon3.0.3
alt-nmdaemon3.0.4
alt-nmdaemon3.1.1
alt-nmdaemon3.1.2
alt-nmdaemon3.1_beta
alt-nmdaemon3.5.0
alt-nmdaemon3.5.1
alt-nmdaemon3.5.4
alt-nmdaemon3.5.4
alt-nmdaemon3.5.4
alt-nmdaemon3.5.6
alt-nmdaemon5.0
alt-nmdaemon5.0
alt-nmdaemon5.0.1
alt-nmdaemon5.0.2
alt-nmdaemon5.0.3
alt-nmdaemon5.0.4
alt-nmdaemon5.0.5
alt-nmdaemon5.0.6
alt-nmdaemon5.0.7
alt-nmdaemon6.0
alt-nmdaemon6.0.5
alt-nmdaemon6.0.6
alt-nmdaemon6.0.7
alt-nmdaemon6.5.0
alt-nmdaemon6.5.1
alt-nmdaemon6.5.2
alt-nmdaemon6.7.5
alt-nmdaemon6.7.9
alt-nmdaemon6.8.0
alt-nmdaemon6.8.1
alt-nmdaemon6.8.2
alt-nmdaemon6.8.3
alt-nmdaemon6.8.4
alt-nmdaemon6.8.5
alt-nmdaemon7.2
alt-nmdaemon8.1.1

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2006-4364