MailEnable IMAP Server Unspecified Buffer Overflow (ME-10018)

Critical Nessus Plugin ID 23754


The remote IMAP server is prone to a buffer overflow attack.


The IMAP server bundled with the version of MailEnable installed on the remote host is affected by an unspecified denial of service and potential buffer overflow vulnerability. A remote attacker may be able to exploit this issue to crash the affected service or to execute arbitrary code with LOCAL SYSTEM privileges.


Apply Hotfix ME-10018.

See Also

Plugin Details

Severity: Critical

ID: 23754

File Name: mailenable_me_10018.nasl

Version: $Revision: 1.16 $

Type: local

Agent: windows

Family: Windows

Published: 2006/12/04

Modified: 2011/04/20

Dependencies: 23753

Risk Information

Risk Factor: Critical


Base Score: 10

Temporal Score: 8.3

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:F/RL:OF/RC:C

Vulnerability Information

CPE: cpe:/a:mailenable:mailenable

Required KB Items: SMB/MailEnable/Installed

Exploit Available: true

Exploit Ease: Exploits are available

Vulnerability Publication Date: 2006/11/23

Reference Information

BID: 21252

Secunia: 23047