CVE-2008-3607

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
12/08/2008
Last modified:
09/04/2025

Description

The IMAP server in NoticeWare Email Server NG 4.6.3 and earlier allows remote attackers to cause a denial of service (daemon crash) via multiple long LOGIN commands.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:noticeware:email_server:*:*:*:*:*:*:*:* 4.6.3 (including)
cpe:2.3:a:noticeware:email_server:4.2.1:*:*:*:*:*:*:*
cpe:2.3:a:noticeware:email_server:4.2.2:*:*:*:*:*:*:*
cpe:2.3:a:noticeware:email_server:4.2.3:*:*:*:*:*:*:*
cpe:2.3:a:noticeware:email_server:4.2.4:*:*:*:*:*:*:*
cpe:2.3:a:noticeware:email_server:4.3.1:*:*:*:*:*:*:*
cpe:2.3:a:noticeware:email_server:4.3.2:*:*:*:*:*:*:*
cpe:2.3:a:noticeware:email_server:4.3.4:*:*:*:*:*:*:*
cpe:2.3:a:noticeware:email_server:4.5.1:*:*:*:*:*:*:*
cpe:2.3:a:noticeware:email_server:4.5.2:*:*:*:*:*:*:*
cpe:2.3:a:noticeware:email_server:4.5.3:*:*:*:*:*:*:*
cpe:2.3:a:noticeware:email_server:4.6.1:*:*:*:*:*:*:*
cpe:2.3:a:noticeware:email_server:4.6.2:*:*:*:*:*:*:*