Mercury IMAP Server LOGIN Command Remote Overflow

High Nessus Plugin ID 24785


The remote IMAP server is affected by a buffer overflow vulnerability.


The remote host is running the Mercury Mail Transport System, a free suite of server products for Windows and NetWare associated with Pegasus Mail.

The remote installation of Mercury Mail includes an IMAP server that is affected by a buffer overflow flaw. Using a specially crafted LOGIN command, an unauthenticated, remote attacker can leverage this issue to crash the remote application and even execute arbitrary code remotely, subject to the privileges under which the application runs.


Unknown at this time.

Plugin Details

Severity: High

ID: 24785

File Name: mercury_imap_overflow.nasl

Version: $Revision: 1.14 $

Type: remote

Published: 2007/03/09

Modified: 2011/09/22

Dependencies: 10125

Risk Information

Risk Factor: High


Base Score: 7.5

Temporal Score: 7.1

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Temporal Vector: CVSS2#E:F/RL:U/RC:ND

Vulnerability Information

Excluded KB Items: imap/false_imap, imap/overflow

Exploit Available: true

Exploit Ease: Exploits are available

Vulnerability Publication Date: 2006/11/14

Exploitable With

Core Impact

Reference Information

CVE: CVE-2006-5961

BID: 21110

OSVDB: 30395

EDB-ID: 3418