peter bassill · operator
$ cve CVE-2005-1255 JSON

CVE-2005-1255 EXPLOIT

10.0
HIGH · CVSS 2.0 · EPSS 42.8% (pctl 99)

Patch early

A public exploit exists.

Description

Multiple stack-based buffer overflows in the IMAP server in IMail 8.12 and 8.13 in Ipswitch Collaboration Suite (ICS), and other versions before IMail Server 8.2 Hotfix 2, allow remote attackers to execute arbitrary code via a LOGIN command with (1) a long username argument or (2) a long username argument that begins with a special character.

Scoring

CVSS10.0 (HIGH, v2.0)
VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS42.81% — more likely to be exploited than 99% of all CVEs
On CISA KEVno
Public exploityes
Published2005-05-25
Last modified2026-06-16

Affected (3)

VendorProduct
ipswitchimail
ipswitchimail server
ipswitchipswitch collaboration suite

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD