Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7rxv-h96q-xxv7

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Format string vulnerability in webmail.exe in NetWin SurgeMail 38k4 and earlier and beta 39a, and WebMail 3.1s and earlier, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via format string specifiers in the page parameter.

Format string vulnerability in webmail.exe in NetWin SurgeMail 38k4 and earlier and beta 39a, and WebMail 3.1s and earlier, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via format string specifiers in the page parameter.

EPSS

Процентиль: 94%
0.07946
Низкий

Дефекты

CWE-134

Связанные уязвимости

nvd
больше 18 лет назад

Format string vulnerability in webmail.exe in NetWin SurgeMail 38k4 and earlier and beta 39a, and WebMail 3.1s and earlier, allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via format string specifiers in the page parameter.

EPSS

Процентиль: 94%
0.07946
Низкий

Дефекты

CWE-134