CVE-2006-5176: Buffer Overflow
Published Oct 6, 2006
·Updated
Buffer overflow in NTLM authentication in MailEnable Professional 2.0 and Enterprise 2.0 allows remote attackers to execute arbitrary code via "the signature field of NTLM Type 1 messages".
Affected Software
2 affected components
MailEnable MailEnable Enterprise=2.0
MailEnable MailEnable Professional=2.0
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Oct 6, 2006
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Oct 10, 2006
Data Sourced
via NVD·04:06 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-5176?
CVE-2006-5176 is considered to have a high severity due to its potential for allowing remote code execution.
2
How do I fix CVE-2006-5176?
To fix CVE-2006-5176, update MailEnable Professional or Enterprise to the latest patched version available from the vendor.
3
What systems are affected by CVE-2006-5176?
The affected systems for CVE-2006-5176 include MailEnable Professional 2.0 and MailEnable Enterprise 2.0.
4
What type of attack can exploit CVE-2006-5176?
CVE-2006-5176 can be exploited through a buffer overflow attack in NTLM authentication.
5
Is CVE-2006-5176 still a concern for current MailEnable users?
CVE-2006-5176 remains a concern for users of the vulnerable versions of MailEnable that have not been updated.