[] NeoSense

Alt-N MDaemon 2.8.5 - WebConfig Overflow Denial of Service

Author: Ussr Labs
type: dos
platform: windows
port: 
date_added: 1999-11-24 
date_updated: 2012-07-07 
verified: 1 
codes: CVE-1999-0844;OSVDB-12034 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/820/info

The Mdaemon mail server for Windows includes a small web server for web-based remote administration. This webserver is vulnerable due to an unchecked buffer that handles incoming GET requests. An abnormally large URL sent to the WebConfig service at port 2002 will crash the service.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/19639-1.zip

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/19639-2.exe