NGSSoftware Insight Security Research Advisory #NISR2406-03 – WebAdmin.exe, a utility that allows remote administrators to control MDaemon, RelayFax, and WorldClient, has a remotely exploitable buffer overrun in the USER parameter that would allow a remote attacker to execute arbitrary code on the server.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/31278/NGSwebadmin.txt
Source: https://packetstormsecurity.com/files/31278/NGSwebadmin.txt.html

