Carnegie Mellon University

    Dashboard / Vendors

    Products: 3
    Vulnerabilities: 10
    Known Exploited: 0
    5
    Critical Level Threats
    2
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2009-0688

    cyrus-sasl: sasl_encode64() does not reliably null-terminate its output

    Last Modified: Apr 23, 2026
    Published: May 15, 2008

    CVE-2006-0250

    Format string vulnerability in the snmp_input function in snmptrapd in CMU SNMP utilities (cmu-snmp) allows remote attackers to execute arbitrary code by sending crafted SNMP messages to UDP port 162.

    Last Modified: Apr 16, 2026
    Published: Jan 18, 2006

    CVE-2004-1067

    Off-by-one error in the mysasl_canon_user function in Cyrus IMAP Server 2.2.9 and earlier leads to a buffer overflow, which may allow remote attackers to execute arbitrary code via the username.

    Last Modified: Apr 16, 2026
    Published: Dec 10, 2004

    CVE-2004-1013

    The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary code via certain commands such as (1) "body[p", (2) "binary[p", or (3) "binary[p") that cause an index increment error that leads to an out-of-bounds memory corruption.

    Last Modified: Apr 16, 2026
    Published: Dec 01, 2004

    CVE-2004-1012

    The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary code via a certain command ("body[p") that is treated as a different command ("body.peek") and causes an index increment error that leads to an out-of-bounds memory corruption.

    Last Modified: Apr 16, 2026
    Published: Dec 01, 2004
    Items Per Page
    Carnegie_Mellon_University Vulnerabilities & Security CVEs | CVE-DB