Stack-based Buffer Overflow in SurgeMail Webmail Feature
CVE-2007-6457

Currently unrated

Key Information:

Vendor

Netwin

Status
Vendor
CVE Published:
20 December 2007

What is CVE-2007-6457?

SurgeMail versions prior to 38k4 are susceptible to a stack-based buffer overflow in the webmail functionality. This vulnerability enables remote attackers to send a specially crafted request containing an excessively long Host header, which can result in a service crash, disrupting operations and potentially exposing system vulnerabilities. Organizations using affected versions should consider implementing immediate mitigations or upgrading to secure versions to safeguard against possible exploitation.

References

EPSS Score

7% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.