Stack-based Buffer Overflow in SurgeMail Webmail Feature
CVE-2007-6457
Currently unrated
What is CVE-2007-6457?
SurgeMail versions prior to 38k4 are susceptible to a stack-based buffer overflow in the webmail functionality. This vulnerability enables remote attackers to send a specially crafted request containing an excessively long Host header, which can result in a service crash, disrupting operations and potentially exposing system vulnerabilities. Organizations using affected versions should consider implementing immediate mitigations or upgrading to secure versions to safeguard against possible exploitation.
References
EPSS Score
7% chance of being exploited in the next 30 days.
Timeline
Vulnerability published
Vulnerability Reserved