Back
CVE-2005-2931
Format string vulnerability in the SMTP service in IMail Server 8.20 in Ipswitch Collaboration Suite (ICS) before 2.02 allows remote attackers to execute arbitrary code via format string specifiers to the (1) EXPN, (2) MAIL, (3) MAIL FROM, and (4) RCPT TO commands.
Published: Dec 7, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (3)
| Vendor | Product | Version |
|---|---|---|
| ipswitch | imail_server | 8.20 |
| ipswitch | ipswitch_collaboration_suite | 2.0 |
| ipswitch | ipswitch_collaboration_suite | 2.01 |
GitHub Security Advisory GHSA-8662-6xfx-55gr
Format string vulnerability in the SMTP service in IMail Server 8.20 in Ipswitch Collaboration...
References (12)
- http://secunia.com/advisories/17863
- http://securitytracker.com/id?1015317
- http://www.idefense.com/application/poi/display?id=346&type=vulnerabilities Patch, Vendor Advisory
- http://www.ipswitch.com/support/imail/releases/imail_professional/im822.asp Patch
- http://www.securityfocus.com/bid/15752
- http://www.vupen.com/english/advisories/2005/2782
- http://secunia.com/advisories/17863
- http://securitytracker.com/id?1015317
- http://www.idefense.com/application/poi/display?id=346&type=vulnerabilities Patch, Vendor Advisory
- http://www.ipswitch.com/support/imail/releases/imail_professional/im822.asp Patch
- http://www.securityfocus.com/bid/15752
- http://www.vupen.com/english/advisories/2005/2782
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
4.74%
Top 9% most likely to be exploited
Threat Score
31.4 / 100
Data Sources
NVD
EPSS
GitHub