Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2011-1430

The STARTTLS implementation in the server in Ipswitch IMail 11.03 and earlier does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted SMTP sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack, a similar issue to CVE-2011-0411.

  • Published: Mar 16, 2011
  • Updated: Apr 13, 2023
  • CVE: CVE-2011-1430
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 6.8
  • AV:N/AC:M/Au:N/C:P/I:P/A:P

CWEs:

Software From Fixed in
ipswitch / imail 5.0 5.0.x
ipswitch / imail 6.0.4 6.0.4.x
ipswitch / imail 2006 2006.x
ipswitch / imail 11.01 11.01.x
ipswitch / imail 8.1 8.1.x
ipswitch / imail 6.4 6.4.x
ipswitch / imail 6.0.5 6.0.5.x
ipswitch / imail 5.0.8 5.0.8.x
ipswitch / imail 11.02 11.02.x
ipswitch / imail 7.0.5 7.0.5.x
ipswitch / imail 5.0.7 5.0.7.x
ipswitch / imail - -
ipswitch / imail 2006.2 2006.2.x
ipswitch / imail 7.0.2 7.0.2.x
ipswitch / imail 11 11.x
ipswitch / imail 5.0.5 5.0.5.x
ipswitch / imail 7.0.1 7.0.1.x
ipswitch / imail 10.02 10.02.x
ipswitch / imail 7.1 7.1.x
ipswitch / imail 7.0.7 7.0.7.x
ipswitch / imail 7.0.6 7.0.6.x
ipswitch / imail 6.0.6 6.0.6.x
ipswitch / imail 2006.1 2006.1.x
ipswitch / imail 6.1 6.1.x
ipswitch / imail 6.06 6.06.x
ipswitch / imail 6.0.1 6.0.1.x
ipswitch / imail 8.0.5 8.0.5.x
ipswitch / imail 6.00 6.00.x
ipswitch / imail 8.11 8.11.x
ipswitch / imail 6.0.3 6.0.3.x
ipswitch / imail 8.12 8.12.x
ipswitch / imail 6.3 6.3.x
ipswitch / imail - 11.03.x
ipswitch / imail 6.0 6.0.x
ipswitch / imail 6.0.2 6.0.2.x
ipswitch / imail 10 10.x
ipswitch / imail 8.13 8.13.x
ipswitch / imail 5.0.6 5.0.6.x
ipswitch / imail 8.01 8.01.x
ipswitch / imail 7.12 7.12.x
ipswitch / imail 7.0.4 7.0.4.x
ipswitch / imail 8.22 8.22.x
ipswitch / imail 6.2 6.2.x
ipswitch / imail server_8.2_hotfix_2 server_8.2_hotfix_2.x
ipswitch / imail 7.0.3 7.0.3.x
ipswitch / imail 10.01 10.01.x
ipswitch / imail 8.0.3 8.0.3.x