CVE-2007-4607

Buffer overflow in the EasyMailSMTPObj ActiveX control in emsmtp.dll 6.0.1 in the Quiksoft EasyMail SMTP Object, as used in Postcast Server Pro 3.0.61 and other products, allows remote attackers to execute arbitrary code via a long argument to the SubmitToExpress method, a different vulnerability than CVE-2007-1029. NOTE: this may have been fixed in version 6.0.3.15.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gate_comm_software:postcast_server_pro:3.0.61:*:*:*:*:*:*:*
cpe:2.3:a:quicksoft:easymail_objects:*:*:*:*:*:*:*:*

History

21 Nov 2024, 00:36

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2013-04/0220.html - () http://archives.neohapsis.com/archives/bugtraq/2013-04/0220.html -
References () http://osvdb.org/38335 - () http://osvdb.org/38335 -
References () http://retrogod.altervista.org/postcast-emsmtp_bof.html - () http://retrogod.altervista.org/postcast-emsmtp_bof.html -
References () http://secunia.com/advisories/24199 - () http://secunia.com/advisories/24199 -
References () http://secunia.com/advisories/26639 - () http://secunia.com/advisories/26639 -
References () http://www.kb.cert.org/vuls/id/281977 - US Government Resource () http://www.kb.cert.org/vuls/id/281977 - US Government Resource
References () http://www.securityfocus.com/bid/25467 - Exploit () http://www.securityfocus.com/bid/25467 - Exploit
References () https://community.ivanti.com/docs/DOC-50988 - () https://community.ivanti.com/docs/DOC-50988 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/36307 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/36307 -
References () https://www.exploit-db.com/exploits/4328 - () https://www.exploit-db.com/exploits/4328 -

Information

Published : 2007-08-31 00:17

Updated : 2024-11-21 00:36


NVD link : CVE-2007-4607

Mitre link : CVE-2007-4607

CVE.ORG link : CVE-2007-4607


JSON object : View

Products Affected

gate_comm_software

  • postcast_server_pro

quicksoft

  • easymail_objects
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer