← Vulnerability feed

Vulnerability record · CVE-2005-2223 · published 12 July 2005

CVE-2005-2223: MailEnable SMTP service crash during authentication

Mailenable · Mailenable Professional

MailEnable Standard before 1.9 and Professional before 1.6 contain an unspecified vulnerability in the SMTP service that lets a remote attacker crash the service during authentication. The flaw is unauthenticated and network-reachable, so it can interrupt mail service for any exposed server. The record gives no root-cause detail beyond the authentication phase, so the exact trigger is unknown.

5.0 CVSS 2.0 Medium EPSS 51% · top 1.1%
5.0CVSS 2.0 base score
51%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
6References
16 Jun 2026Last modified by NVD

Description

Unknown vulnerability in the SMTP service in MailEnable Standard before 1.9 and Professional before 1.6 allows remote attackers to cause a denial of service (crash) during authentication.

AV:N/AC:L/Au:N/C:N/I:N/A:P

Automated analysis

Generated by VULONE's analysis model from the NVD record, CISA KEV and EPSS data on 20 September 2026. Confidence: medium.

medium priorityUnauthenticated remote denial of service with high EPSS but only partial availability impact and no evidence of active exploitation or KEV listing.

What it is

MailEnable Standard before 1.9 and Professional before 1.6 contain an unspecified vulnerability in the SMTP service that lets a remote attacker crash the service during authentication. The flaw is unauthenticated and network-reachable, so it can interrupt mail service for any exposed server. The record gives no root-cause detail beyond the authentication phase, so the exact trigger is unknown.

Impact

An attacker can cause a denial of service by crashing the SMTP service, disrupting mail delivery and potentially other dependent services on the host. No confidentiality or integrity impact is indicated by the CVSS vector.

Attack surface

Reachable over the network via the SMTP service; the CVSS vector AV:N/AC:L/Au:N indicates no authentication and no user interaction are required. The crash occurs during the authentication exchange.

Exploitation

Not listed in CISA KEV and no public exploit is referenced, but EPSS is 0.50805 (98.9th percentile), indicating a high predicted likelihood of exploitation activity. Reference tags only indicate a patch link, not exploit code.

What to do

  • Upgrade MailEnable Standard to 1.9 or later and Professional to 1.6 or later, per the vendor patch reference.
  • Restrict SMTP access to trusted networks and required mail relays using firewall rules.
  • Disable or tightly limit SMTP authentication exposure to the internet where operationally possible.
  • Monitor the SMTP service for unexpected restarts and configure automatic recovery or alerting.
  • Review vendor history pages for the exact fixed build before deploying.

Detection

  • Alert on SMTP service crash, restart or unexpected process termination events on MailEnable hosts.
  • Monitor authentication-phase SMTP sessions for repeated failures or malformed AUTH commands from single sources.
  • Baseline normal SMTP authentication traffic and flag anomalous connection patterns or volumes.
  • Correlate mail service downtime with inbound SMTP connection logs to identify a triggering source.

This assessment is produced automatically and is not human-reviewed. Verify against the vendor advisory before acting on it.

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2005-2223 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2006-6997Mailenable enterprise improper authentication vulnerabilityUnspecified vulnerability in a cryptographic feature in MailEnable Standard Edition before 1.93, Professional Edition before 1.73, and Enterprise Edi…EPSS 1.8%10.0CVE-2006-6605Mailenable enterprise vulnerabilityStack-based buffer overflow in the POP service in MailEnable Standard 1.98 and earlier; Professional 1.84, and 2.35 and earlier; and Enterprise 1.41,…EPSS 5.9%10.0CVE-2006-6423MailEnable IMAP Service Pre-Auth Stack Buffer OverflowMailEnable Professional and Enterprise IMAP service contains a stack-based buffer overflow reachable before authentication. A remote attacker can sen…EPSS 71%analysed10.0CVE-2006-1792Mailenable enterprise vulnerabilityUnspecified vulnerability in the POP service in MailEnable Standard Edition before 1.94, Professional Edition before 1.74, and Enterprise Edition bef…EPSS 1.8%10.0CVE-2005-2222Mailenable professional vulnerabilityUnknown vulnerability in the HTTPMail service in MailEnable Professional before 1.6 has unknown impact and attack vectors.EPSS 1.4%9.3CVE-2006-5176Mailenable enterprise memory buffer overflow vulnerabilityBuffer overflow in NTLM authentication in MailEnable Professional 2.0 and Enterprise 2.0 allows remote attackers to execute arbitrary code via "the s…EPSS 5.4%9.3CVE-2006-5177Mailenable enterprise memory buffer overflow vulnerabilityThe NTLM authentication in MailEnable Professional 2.0 and Enterprise 2.0 allows remote attackers to (1) execute arbitrary code via unspecified vecto…EPSS 7.1%9.0CVE-2008-1276Mailenable enterprise memory buffer overflow vulnerabilityMultiple buffer overflows in the IMAP service (MEIMAPS.EXE) in MailEnable Professional Edition and Enterprise Edition 3.13 and earlier allow remote a…EPSS 7.1%

Source: NIST National Vulnerability Database (record CVE-2005-2223), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.