← back
CVE-2006-6424

CVE-2006-6424

50Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 58%
from disclosure to weapon1229 days
Published on NVDDec 27
1st PoC+1229d
metasploitDec 23
exploitation probability
58%top 1% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Multiple buffer overflows in Novell NetMail before 3.52e FTF2 allow remote attackers to execute arbitrary code (1) by appending literals to certain IMAP verbs when specifying command continuation requests to IMAPD, resulting in a heap overflow; and (2) via crafted arguments to the STOR command to the Network Messaging Application Protocol (NMAP) daemon, resulting in a stack overflow.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.