VYPR

Slmail

by Seattle Lab Software

CVEs (4)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2003-02640.070.55May 27, 2003Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO argument to slmail.exe, (2) a long XTRN argument to slmail.exe, (3) a long string to POPPASSWD, or (4) a long password to the POP3 server.
CVE-1999-03800.000.00Feb 25, 1999SLMail 3.1 and 3.2 allows local users to access any file in the NTFS file system when the Remote Administration Service (RAS) is enabled by setting a user's Finger File to point to the target file, then running finger on the user.
CVE-1999-02310.000.01Jan 1, 1999Buffer overflow in IP-Switch IMail and Seattle Labs Slmail 2.6 packages using a long VRFY command, causing a denial of service and possibly remote access.
CVE-1999-01020.000.01Jul 9, 1998Buffer overflow in SLmail 3.x allows attackers to execute commands using a large FROM line.