IA WebMail Server versions 3.1 and below from True North Software are vulnerable to a stack-based buffer overflow via its HTTP GET request header. This overflow can lead to a denial of service and remote code execution.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/32132/iawebmail.txt
Source: https://packetstormsecurity.com/files/32132/iawebmail.txt.html

