Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2ffp-463q-9cmj

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows remote attackers to cause a denial of service via a USER or PASS command that contains arbitrary formatting directives.

vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows remote attackers to cause a denial of service via a USER or PASS command that contains arbitrary formatting directives.

EPSS

Процентиль: 72%
0.00739
Низкий

Связанные уязвимости

nvd
около 25 лет назад

vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows remote attackers to cause a denial of service via a USER or PASS command that contains arbitrary formatting directives.

EPSS

Процентиль: 72%
0.00739
Низкий