Loading
Stack-based buffer overflow in the IceWarpServer.APIObject ActiveX control in api.dll in IceWarp Merak Mail Server 9.4.1 might allow context-dependent attackers to execute arbitrary code via a large value in the second argument to the Base64FileEncode method, as possibly demonstrated by a web application that accepts untrusted input for this method.
Use CWE-119, Icewarp vendor hub and Merak Mail Server product page to widen CVE-2009-1516 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2008-5734 and CVE-2007-5046 for nearby disclosures in the same product family.