CVE-2007-3927 EXPLOIT
10.0
HIGH · CVSS 2.0 · EPSS 21.9% (pctl 98)
Patch early
A public exploit exists.
Description
Multiple buffer overflows in Ipswitch IMail Server 2006 before 2006.21 (1) allow remote attackers to execute arbitrary code via unspecified vectors in Imailsec and (2) allow attackers to have an unknown impact via an unspecified vector related to "subscribe."
Scoring
| CVSS | 10.0 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 21.89% — more likely to be exploited than 98% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2007-07-21 |
| Last modified | 2026-06-16 |
Affected (2)
| Vendor | Product |
|---|---|
| ipswitch | imail server |
| ipswitch | ipswitch collaboration suite |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | IPSwitch IMail Server 2006 9.10 - Subscribe Remote Overflow | 2007-07-26 |
References
- http://docs.ipswitch.com/IMail%202006.21/ReleaseNotes/IMail_RelNotes.htm#NewRelease
- http://osvdb.org/45818
- http://osvdb.org/45819
- http://secunia.com/advisories/26123
- http://www.securityfocus.com/bid/24962
- http://www.securitytracker.com/id?1018421
- http://www.vupen.com/english/advisories/2007/2574
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35504
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35505
- http://docs.ipswitch.com/IMail%202006.21/ReleaseNotes/IMail_RelNotes.htm#NewRelease
- http://osvdb.org/45818
- http://osvdb.org/45819
- http://secunia.com/advisories/26123
- http://www.securityfocus.com/bid/24962
- http://www.securitytracker.com/id?1018421
- http://www.vupen.com/english/advisories/2007/2574
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35504
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35505
→ the Explorer · watch your stack · NVD