VYPR
Vendor

Metamail Corporation

Sign in to watch
Products
1
CVEs
7
Across products
7
Status
Private

Products

1

Recent CVEs

7
CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2004-01040.070.51Mar 3, 2004Multiple format string vulnerabilities in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code.
CVE-2006-07090.010.08Feb 15, 2006Buffer overflow in Metamail 2.7-50 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via e-mail messages with a long boundary attribute, a different vulnerability than CVE-2004-0105.
CVE-2004-01050.010.13Mar 3, 2004Multiple buffer overflows in Metamail 2.7 and earlier allow remote attackers to execute arbitrary code.
CVE-2004-18080.000.00Dec 31, 2004Extcompose in metamail does not verify the output file before writing to it, which allows local users to overwrite arbitrary files via a symlink attack.
CVE-1999-12630.000.00Aug 15, 2003Metamail before 2.7-7.2 allows remote attackers to overwrite arbitrary files via an e-mail message containing a uuencoded attachment that specifies the full pathname for the file to be modified, which is processed by uuencode in Metamail scripts such as sun-audio-file.
CVE-1999-12610.000.01Oct 24, 1997Buffer overflow in Rainbow Six Multiplayer allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long nickname (nick) command.
CVE-1999-12660.000.01Jun 13, 1997rsh daemon (rshd) generates different error messages when a valid username is provided versus an invalid name, which allows remote attackers to determine valid users on the system.