Логотип exploitDog
bind:"GHSA-67rj-8f2h-26fc" OR bind:"CVE-2023-42115"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-67rj-8f2h-26fc" OR bind:"CVE-2023-42115"

Количество 9

Количество 9

github логотип

GHSA-67rj-8f2h-26fc

больше 1 года назад

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of a buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. Was ZDI-CAN-17434.

CVSS3: 9.8
EPSS: Высокий
ubuntu логотип

CVE-2023-42115

больше 1 года назад

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of a buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. . Was ZDI-CAN-17434.

CVSS3: 9.8
EPSS: Высокий
redhat логотип

CVE-2023-42115

больше 2 лет назад

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of a buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. . Was ZDI-CAN-17434.

CVSS3: 9.8
EPSS: Высокий
nvd логотип

CVE-2023-42115

больше 1 года назад

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of a buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. . Was ZDI-CAN-17434.

CVSS3: 9.8
EPSS: Высокий
debian логотип

CVE-2023-42115

больше 1 года назад

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. Thi ...

CVSS3: 9.8
EPSS: Высокий
fstec логотип

BDU:2023-06268

больше 2 лет назад

Уязвимость cлужбы smtp почтового сервера Exim, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
EPSS: Высокий
suse-cvrf логотип

openSUSE-SU-2023:0293-1

больше 2 лет назад

Security update for exim

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2024:0007-1

около 2 лет назад

Security update for exim

EPSS: Низкий
redos логотип

ROS-20240404-17

почти 2 года назад

Множественные уязвимости exim

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-67rj-8f2h-26fc

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of a buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. Was ZDI-CAN-17434.

CVSS3: 9.8
73%
Высокий
больше 1 года назад
ubuntu логотип
CVE-2023-42115

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of a buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. . Was ZDI-CAN-17434.

CVSS3: 9.8
73%
Высокий
больше 1 года назад
redhat логотип
CVE-2023-42115

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of a buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. . Was ZDI-CAN-17434.

CVSS3: 9.8
73%
Высокий
больше 2 лет назад
nvd логотип
CVE-2023-42115

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of a buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. . Was ZDI-CAN-17434.

CVSS3: 9.8
73%
Высокий
больше 1 года назад
debian логотип
CVE-2023-42115

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. Thi ...

CVSS3: 9.8
73%
Высокий
больше 1 года назад
fstec логотип
BDU:2023-06268

Уязвимость cлужбы smtp почтового сервера Exim, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
73%
Высокий
больше 2 лет назад
suse-cvrf логотип
openSUSE-SU-2023:0293-1

Security update for exim

больше 2 лет назад
suse-cvrf логотип
openSUSE-SU-2024:0007-1

Security update for exim

около 2 лет назад
redos логотип
ROS-20240404-17

Множественные уязвимости exim

CVSS3: 9.8
почти 2 года назад

Уязвимостей на страницу