Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8q7c-xwf8-vm5r

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Format string vulnerability in qwik-smtpd.c in QwikMail SMTP (qwik-smtpd) 0.3 and earlier allows remote attackers to execute arbitrary code via format specifiers in the (1) clientRcptTo array, and the (2) Received and (3) messageID variables, possibly involving HELO and hostname arguments.

Format string vulnerability in qwik-smtpd.c in QwikMail SMTP (qwik-smtpd) 0.3 and earlier allows remote attackers to execute arbitrary code via format specifiers in the (1) clientRcptTo array, and the (2) Received and (3) messageID variables, possibly involving HELO and hostname arguments.

EPSS

Процентиль: 94%
0.15333
Средний

Связанные уязвимости

nvd
около 21 года назад

Format string vulnerability in qwik-smtpd.c in QwikMail SMTP (qwik-smtpd) 0.3 and earlier allows remote attackers to execute arbitrary code via format specifiers in the (1) clientRcptTo array, and the (2) Received and (3) messageID variables, possibly involving HELO and hostname arguments.

EPSS

Процентиль: 94%
0.15333
Средний