Stack-based Buffer Overflow in SurgeMail Webmail Feature
CVE-2007-6457

Currently unrated

Key Information:

Vendor

Netwin

Status
Vendor
CVE Published:
20 December 2007

What is CVE-2007-6457?

SurgeMail versions prior to 38k4 are susceptible to a stack-based buffer overflow in the webmail functionality. This vulnerability enables remote attackers to send a specially crafted request containing an excessively long Host header, which can result in a service crash, disrupting operations and potentially exposing system vulnerabilities. Organizations using affected versions should consider implementing immediate mitigations or upgrading to secure versions to safeguard against possible exploitation.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.