Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in NTLM authentication in MailEnable Professional 2.0 and Enterprise 2.0 allows remote attackers to execute arbitrary code via "the signature field of NTLM Type 1 messages".
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MailEnable处理畸形消息远程代码执行及拒绝服务漏洞
Vulnerability Description
MailEnabe是一款商业性质的POP3和SMTP服务器。 MailEnable在处理畸形消息时存在多个漏洞,远程攻击者可能利用这些漏洞在服务器执行任意指令或造成拒绝服务。 具体漏洞如下: 1. MailEnable在处理带特定签名字段的NTLM Type 1消息时存在缓冲溢出,远程攻击者可以利用此漏洞控制服务器。 2. MailEnable在处理base64编码的NTLM Type 1消息时存在错误,远程攻击者可以造成拒绝服务。 3. MailEnable在解码畸形base64编码的Type 3消息时
CVSS Information
N/A
Vulnerability Type
N/A