This script is Copyright (C) 2004-2012 Tenable Network Security, Inc.
Synopsis :
The remote mail server is affected by multiple denial of service
vulnerabilities.
Description :
The remote host is running IMail web interface. This version contains
multiple buffer overflows.
An attacker could use these flaws to remotely crash the service
accepting requests from users, or possibly execute arbitrary code.
See also :
http://support.ipswitch.com/kb/IM-20040902-DM01.htm
Solution :
Upgrade to IMail 8.13 or laster, as this reportedly fixes the issue.
Risk factor :
Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:N/I:P/A:N)
CVSS Temporal Score : 3.7
(CVSS2#E:U/RL:OF/RC:C)
Public Exploit Available : false
Family: Windows
Nessus Plugin ID: 14684 (ipswitch_IMail_bo.nasl)
Bugtraq ID: 11106
CVE ID: CVE-2004-2422
CVE-2004-2423