Loading
Multiple buffer overflows in the IMAILAPILib ActiveX control (IMailAPI.dll) in Ipswitch IMail Server before 2006.2 allow remote attackers to execute arbitrary code via the (1) WebConnect and (2) Connect members in the (a) IMailServer control; (3) Sync3 and (4) Init3 members in the (b) IMailLDAPService control; and the (5) SetReplyTo member in the (c) IMailUserCollection control.
Use Ipswitch vendor hub and Imail product page to widen CVE-2007-1637 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2005-1256, CVE-2005-1255 and CVE-2007-2795 for nearby disclosures in the same product family.