A vulnerability in NetWin's IMAP server allows authenticated users to cause an internal buffer to overflow which in turn can be used to cause the product to execute arbitrary code.

http://www.securiteam.com/exploits/5UP0G1PNQC.html