CVE-2006-6605: Buffer Overflow
Stack-based buffer overflow in the POP service in MailEnable Standard 1.98 and earlier; Professional 1.84, and 2.35 and earlier; and Enterprise 1.41, and 2.35 and earlier before ME-10026 allows remote attackers to execute arbitrary code via a long argument to the PASS command.
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6605?
CVE-2006-6605 is classified as having high severity due to the potential for remote code execution.
How do I fix CVE-2006-6605?
To fix CVE-2006-6605, upgrade MailEnable to a version later than 1.98 for Standard, later than 1.84 for Professional, and later than 1.41 for Enterprise.
What types of MailEnable are affected by CVE-2006-6605?
CVE-2006-6605 affects MailEnable Standard versions up to 1.98, Professional versions up to 2.35, and Enterprise versions up to 2.35.
What kind of attack does CVE-2006-6605 facilitate?
CVE-2006-6605 allows remote attackers to execute arbitrary code via a long argument to the PASS command.
Is there a patch available for CVE-2006-6605?
Yes, patches to address CVE-2006-6605 are included in later versions of MailEnable.