CVE-2007-0887
high · 7.8axigen 1.2.6 through 2.0.0b1 does not properly parse login credentials, which allows remote attackers to cause a denial of service (NULL dereference and application crash) via a base64-encoded "*\x00" sequence on the imap port (143/tcp).
7.8
CVSS
10.4%
EPSS (exploit prob.)
96th
EPSS percentile
2007-02-12
Published
AV:N/AC:L/Au:N/C:N/I:N/A:C
Weaknesses
CWE-476
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| gecad_technologies | axigen_mail_server | 1.2.6 |
| gecad_technologies | axigen_mail_server | 2.0.0b1 |
Check a specific version with /api/v1/cve/match.
References
- http://marc.info/?l=full-disclosure&m=117094708423302&w=2
- http://osvdb.org/33165
- http://secunia.com/advisories/24073
- http://www.securityfocus.com/bid/22473
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32345
- https://www.exploit-db.com/exploits/3290
- http://marc.info/?l=full-disclosure&m=117094708423302&w=2
- http://osvdb.org/33165
- http://secunia.com/advisories/24073
- http://www.securityfocus.com/bid/22473
- https://exchange.xforce.ibmcloud.com/vulnerabilities/32345
- https://www.exploit-db.com/exploits/3290
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2007-0887