Title: MERCUR Messaging IMAP Service Multiple Command Remote Overflow
Info
Disclosure
Mar 16, 2006
Discovery
Unknown
Dates
Exploit
Mar 19, 2006
Solution
Unknown
Description
A remote overflow exists in MERCUR Messaging Server IMAP service. The product fails to perform boundary checks on login and select commands resulting in a stack-based overflow. With a specially crafted request, an attacker can cause arbitrary code execution resulting in a loss of integrity.