๐Ÿ” CVE Alert

CVE-2019-25364

CRITICAL 9.8

Win10 MailCarrier 2.51 - 'POP3 User' Remote Buffer Overflow

CVSS Score
9.8
EPSS Score
0.0%
EPSS Percentile
0th

MailCarrier 2.51 contains a buffer overflow vulnerability in the POP3 USER command that allows remote attackers to execute arbitrary code. Attackers can send a crafted oversized buffer to the POP3 service, overwriting memory and potentially gaining remote system access.

CWE CWE-121
Vendor tabs laboratories corporation
Product win10 mailcarrier
Published Feb 18, 2026
Last Updated Feb 19, 2026
Stay Ahead of the Next One

Get instant alerts for tabs laboratories corporation win10 mailcarrier

Be the first to know when new critical vulnerabilities affecting tabs laboratories corporation win10 mailcarrier are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Affected Versions

TABS Laboratories Corporation / Win10 MailCarrier
2.51

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
exploit-db.com: https://www.exploit-db.com/exploits/47554 tabslab.com: https://www.tabslab.com/ vulncheck.com: https://www.vulncheck.com/advisories/win-mailcarrier-pop-user-remote-buffer-overflow

Credits

Lance Biggerstaff, Dino Covotsos - Telspace Systems