CVE-2008-1497

Stack-based buffer overflow in the IMAP service in NetWin SurgeMail 38k4-4 and earlier allows remote authenticated users to execute arbitrary code via long arguments to the LSUB command.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:S/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 92%
VendorProductVersion
netwinsurgemail
1.8g3:g3
netwinsurgemail
1.9b2:b2
netwinsurgemail
2.0a2:a2
netwinsurgemail
2.0c:c
netwinsurgemail
2.0e:e
netwinsurgemail
2.0g2:g2
netwinsurgemail
2.1c7:c7
netwinsurgemail
2.2a6:a6
netwinsurgemail
2.2c10:c10
netwinsurgemail
2.2g2:g2
netwinsurgemail
2.2g3:g3
netwinsurgemail
3.0a:a
netwinsurgemail
3.0c2:c2
netwinsurgemail
3.2e:e
netwinsurgemail
3.5a:a
netwinsurgemail
3.5b3:b3
netwinsurgemail
3.6d:d
netwinsurgemail
3.6f3:f3
netwinsurgemail
3.6f5:f5
netwinsurgemail
3.6f7:f7
netwinsurgemail
3.7b:b
netwinsurgemail
3.7b3:b3
netwinsurgemail
3.7b5:b5
netwinsurgemail
3.7b6:b6
netwinsurgemail
3.7b7:b7
netwinsurgemail
3.7b8:b8
netwinsurgemail
3.8a:a
netwinsurgemail
3.8b:b
netwinsurgemail
3.8d:d
netwinsurgemail
3.8f:f
netwinsurgemail
3.8f2:f2
netwinsurgemail
3.8f3:f3
netwinsurgemail
3.8i:i
netwinsurgemail
3.8i2:i2
netwinsurgemail
3.8i3:i3
netwinsurgemail
3.8k:k
netwinsurgemail
3.8k2:k2
netwinsurgemail
3.8k3:k3
netwinsurgemail
3.8m:m
𝑥
= Vulnerable software versions