Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in YoungZSoft CMailServer 3.30 allows remote attackers to execute arbitrary code via a long USER argument.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
YoungZSoft CMailServer远程缓冲区溢出漏洞
Vulnerability Description
CMailServer是一款基于Web的电子邮件系统,可使用在Linux/Unix和Windows等多种操作系统下。 CMailServer对用户提供的输入缺少正确充分的边界缓冲检查,可导致远程攻击者进行缓冲溢出区攻击。 CMailServer在sprintf()函数中在检查通过USER命令提交的那个用户名在mail目录下是否存在相应的目录时缺少正确检查,攻击者提交包含恶意的目录信息会出现缓冲区溢出,精心构建目录数据可导致攻击者以Web进程权限在目标系统中执行任意指令。 <*链接:http://archi
CVSS Information
N/A
Vulnerability Type
N/A