Vulnerability index

Browse CVEs

18 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Alpine HIGH 10.0
CVE-2008-5005EPSS 6%

Multiple stack-based buffer overflows in (1) University of Washington IMAP Toolkit 2002 through 2007c, (2) University of Washington Alpine 2.00 and e…

Patch available
Fix from $1,950 2008-11-10
Imap Toolkit MEDIUM 5.0
CVE-2008-5006

smtp.c in the c-client library in University of Washington IMAP Toolkit 2007b allows remote SMTP servers to cause a denial of service (NULL pointer d…

Mitigation only
Fix from $1,600 2008-11-10
Uw Imap HIGH 7.5
CVE-2005-2933EPSS 8%

Buffer overflow in the mail_valid_net_parse_work function in mail.c for Washington's IMAP Server (UW-IMAP) before imap-2004g allows remote attackers …

Fix: after 2004f
Fix from $1,950 2005-10-13
Uw Imap HIGH 7.5
CVE-2005-0198EPSS 5%

A logic error in the CRAM-MD5 code for the University of Washington IMAP (UW-IMAP) server, when Challenge-Response Authentication Mechanism with MD5 …

Patch available
Fix from $1,950 2005-05-02
Pine HIGH 7.5
CVE-2003-0720EPSS 13%

Buffer overflow in PINE before 4.58 allows remote attackers to execute arbitrary code via a malformed message/external-body MIME type.

Patch available
Fix from $1,950 2003-09-17
C Client HIGH 7.5
CVE-2003-0297

c-client IMAP Client, as used in imap-2002b and Pine 4.53, allows remote malicious IMAP servers to cause a denial of service (crash) and possibly exe…

Mitigation only
Fix from $1,950 2003-06-16
Pine HIGH 7.8
CVE-2002-2325

The c-client library in Internet Message Access Protocol (IMAP) dated before 2002 RC2, as used by Pine 4.20 through 4.44, allows remote attackers to …

Patch available
Fix from $1,950 2002-12-31
Pine MEDIUM 5.0
CVE-2002-1903

Pine 4.2.1 through 4.4.4 puts Unix usernames and/or uid into Sender: and X-Sender: headers, which could allow remote attackers to obtain sensitive in…

Patch available
Fix from $1,600 2002-12-31
Pine MEDIUM 5.0
CVE-2002-1320EPSS 10%

Pine 4.44 and earlier allows remote attackers to cause a denial of service (core dump and failed restart) via an email message with a From header tha…

Patch available
Fix from $1,600 2002-12-11
Pine HIGH 7.5
CVE-2002-0014

URL-handling code in Pine 4.43 and earlier allows remote attackers to execute arbitrary commands via a URL enclosed in single quotes and containing s…

Patch available
Fix from $1,950 2002-07-26
Uw Imap HIGH 7.5
CVE-2002-0379EPSS 19%

Buffer overflow in University of Washington imap server (uw-imapd) imap-2001 (imapd 2001.315) and imap-2001a (imapd 2001.315) with legacy RFC 1730 su…

Mitigation only
Fix from $1,950 2002-06-25
Pine HIGH 7.5
CVE-2000-0909EPSS 12%

Buffer overflow in the automatic mail checking component of Pine 4.21 and earlier allows remote attackers to execute arbitrary commands via a long Fr…

Patch available
Fix from $1,950 2000-12-19
Imap HIGH 7.5
CVE-2000-0847

Buffer overflow in University of Washington c-client library (used by pine and other programs) allows remote attackers to execute arbitrary commands …

Mitigation only
Fix from $1,950 2000-11-14
Imap HIGH 7.5
CVE-2000-0284EPSS 69%

Buffer overflow in University of Washington imapd version 4.7 allows users with a valid account to execute commands via LIST or other commands.

Mitigation only
Fix from $1,950 2000-04-16
Pine HIGH 10.0
CVE-2000-0352

Pine before version 4.21 does not properly filter shell metacharacters from URLs, which allows remote attackers to execute arbitrary commands via a m…

Mitigation only
Fix from $1,950 1999-11-18
Pine HIGH 10.0
CVE-2000-0353

Pine 4.x allows a remote attacker to execute arbitrary commands via an index.html file which executes lynx and obtains a uudecoded file from a malici…

Patch available
Fix from $1,950 1999-06-28
Imap HIGH 10.0
CVE-1999-0920EPSS 32%

Buffer overflow in the pop-2d POP daemon in the IMAP package allows remote attackers to gain privileges via the FOLD command.

Mitigation only
Fix from $1,950 1999-05-26
Wu Ftpd HIGH 7.5
CVE-1999-0202

The GNU tar command, when used in FTP sessions, may allow an attacker to execute arbitrary commands.

Mitigation only
Fix from $1,950 1997-01-01