Логотип exploitDog
bind:CVE-2008-2784
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2008-2784

Количество 2

Количество 2

nvd логотип

CVE-2008-2784

около 17 лет назад

The smtp_filter function in spamdyke before 3.1.8 does not filter RCPT commands after encountering the first DATA command, which allows remote attackers to use the server as an open mail relay by sending RCPT commands with invalid recipients, followed by a DATA command, followed by arbitrary RCPT commands and a second DATA command.

CVSS2: 6.4
EPSS: Низкий
github логотип

GHSA-23c2-5fj7-4rv3

больше 3 лет назад

The smtp_filter function in spamdyke before 3.1.8 does not filter RCPT commands after encountering the first DATA command, which allows remote attackers to use the server as an open mail relay by sending RCPT commands with invalid recipients, followed by a DATA command, followed by arbitrary RCPT commands and a second DATA command.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2008-2784

The smtp_filter function in spamdyke before 3.1.8 does not filter RCPT commands after encountering the first DATA command, which allows remote attackers to use the server as an open mail relay by sending RCPT commands with invalid recipients, followed by a DATA command, followed by arbitrary RCPT commands and a second DATA command.

CVSS2: 6.4
1%
Низкий
около 17 лет назад
github логотип
GHSA-23c2-5fj7-4rv3

The smtp_filter function in spamdyke before 3.1.8 does not filter RCPT commands after encountering the first DATA command, which allows remote attackers to use the server as an open mail relay by sending RCPT commands with invalid recipients, followed by a DATA command, followed by arbitrary RCPT commands and a second DATA command.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу