Show filters
126 Total Results
Displaying 111-120 of 126
Sort by:
Attacker Value
Unknown

CVE-2004-2417

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Format string vulnerability in smtp.c for smtp.proxy 1.1.3 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the (1) client hostname or (2) message-id, which are injected into a syslog message.
0
Attacker Value
Unknown

CVE-2004-0423

Disclosure Date: July 07, 2004 (last updated February 22, 2025)
The log_event function in ssmtp 2.50.6 and earlier allows local users to overwrite arbitrary files via a symlink attack on the ssmtp.log temporary log file.
0
Attacker Value
Unknown

CVE-2004-0156

Disclosure Date: June 01, 2004 (last updated February 22, 2025)
Format string vulnerabilities in the (1) die or (2) log_event functions for ssmtp before 2.50.6 allow remote mail relays to cause a denial of service and possibly execute arbitrary code.
0
Attacker Value
Unknown

CVE-2003-1477

Disclosure Date: December 31, 2003 (last updated February 22, 2025)
MAILsweeper for SMTP 4.3.6 and 4.3.7 allows remote attackers to cause a denial of service (CPU consumption) via a PowerPoint attachment that either (1) is corrupt or (2) contains "embedded objects."
0
Attacker Value
Unknown

CVE-2002-1985

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
iSMTP 5.0.1 allows remote attackers to cause a denial of service via a long "MAIL FROM" command, possibly triggering a buffer overflow.
0
Attacker Value
Unknown

CVE-2002-1090

Disclosure Date: October 04, 2002 (last updated February 22, 2025)
Buffer overflow in read_smtp_response of protocol.c in libesmtp before 0.8.11 allows a remote SMTP server to (1) execute arbitrary code via a certain response or (2) cause a denial of service via long server responses.
0
Attacker Value
Unknown

CVE-2002-1121

Disclosure Date: September 24, 2002 (last updated February 22, 2025)
SMTP content filter engines, including (1) GFI MailSecurity for Exchange/SMTP before 7.2, (2) InterScan VirusWall before 3.52 build 1494, (3) the default configuration of MIMEDefang before 2.21, and possibly other products, do not detect fragmented emails as defined in RFC2046 ("Message Fragmentation and Reassembly") and supported in such products as Outlook Express, which allows remote attackers to bypass content filtering, including virus checking, via fragmented emails of the message/partial content type.
0
Attacker Value
Unknown

CVE-2001-1542

Disclosure Date: December 31, 2001 (last updated February 22, 2025)
NAI WebShield SMTP 4.5 and possibly 4.5 MR1a does not filter improperly MIME encoded email attachments, which could allow remote attackers to bypass filtering and possibly execute arbitrary code in email clients that process the invalid attachments.
0
Attacker Value
Unknown

CVE-2001-1456

Disclosure Date: September 04, 2001 (last updated February 22, 2025)
Buffer overflow in the (1) smap/smapd and (2) CSMAP daemons for Gauntlet Firewall 5.0 through 6.0 allows remote attackers to execute arbitrary code via a crafted mail message.
0
Attacker Value
Unknown

CVE-2000-1129

Disclosure Date: January 09, 2001 (last updated February 22, 2025)
McAfee WebShield SMTP 4.5 allows remote attackers to cause a denial of service via a malformed recipient field.
0