← back
CVE-2005-4267

CVE-2005-4267

50Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 67%
from disclosure to weapon0 days
Published on NVDDec 21
1st PoCDec 20
metasploitDec 20
exploitation probability
67%top 1% of all CVEs
observed exploitation
nono source reports it
2 public exploit(s)
Stack-based buffer overflow in Qualcomm WorldMail 3.0 allows remote attackers to execute arbitrary code via a long IMAP command that ends with a "}" character, as demonstrated using long (1) LIST, (2) LSUB, (3) SEARCH TEXT, (4) STATUS INBOX, (5) AUTHENTICATE, (6) FETCH, (7) SELECT, and (8) COPY commands.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.