← back
CVE-2006-6423

CVE-2006-6423

50Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 69%
from disclosure to weapon66 days
Published on NVDDec 12
1st PoC+66d
metasploitDec 11
exploitation probability
69%top 1% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Stack-based buffer overflow in the IMAP service for MailEnable Professional and Enterprise Edition 2.0 through 2.35, Professional Edition 1.6 through 1.84, and Enterprise Edition 1.1 through 1.41 allows remote attackers to execute arbitrary code via a pre-authentication command followed by a crafted parameter and a long string, as addressed by the ME-10025 hotfix.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.