UoW imapd (UW-IMAP) Multiple Command Remote Overflows (2)

Critical Nessus Plugin ID 10374


The remote host has an application that is affected by multiple issues.


There is a buffer overflow in the remote imap server which allows an authenticated user to obtain a remote shell.


Upgrade your imap server or use another one.

Plugin Details

Severity: Critical

ID: 10374

File Name: uw_imap_overflow_two.nasl

Version: $Revision: 1.27 $

Type: remote

Published: 2000/04/18

Modified: 2013/11/18

Dependencies: 10870, 17975

Risk Information

Risk Factor: Critical


Base Score: 10

Temporal Score: 9.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:F/RL:U/RC:C

Vulnerability Information

Required KB Items: imap/login, imap/password

Excluded KB Items: imap/false_imap

Exploit Available: true

Exploit Ease: Exploits are available

Vulnerability Publication Date: 2000/04/16

Exploitable With

Metasploit (UoW IMAP Server LSUB Buffer Overflow)

Reference Information

CVE: CVE-2000-0284

BID: 1110

OSVDB: 12037