MailEnable's Messaging Services Platform is a powerful and scalable hosted messaging platform for the Microsoft Windows platform. All the elements of a professional and high performance mail server have been integrated into MailEnable with all the difficult and tedious aspects removed.
Credit:
The information has been provided by TJ Shelton.
A vulnerability in the USER allows remote attackers to execute arbitrary code.
Exploit:
USER Ax2009 will over write strcmp();
Here's the code to hang the pop3 server:
/*
*
* Written by redsand
* <redsand@redsand.net>
* Vuln. date found: November 18. 2002
* Vulnerable: Windows 9x/NT/XP MailEnable POP Server Version 1.02
*
* Usage: ./mailenable-dos.1.3 <host> [port] [port] is optional. default is in the #define (port 110)
* Need to Enable [offset] in final release.
*
* Proof of Concept code (PoC)
*
*/