Skip to content
Noroxi

extremail records

7 published records for vendor extremail.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

    The weakness classes this vendor ships most often: where to look.

    CWE

    All records

    7 records
    • Multiple buffer overflows in eXtremail 2.1.1 and earlier allow remote attackers to (1) have an unknown impact by sending multiple long strin

      CriticalCVSS 10.0Proof of conceptEPSS 20%

      extremail · extremailOct 15, 2007

    • Integer overflow in eXtremail 2.1.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, v

      CriticalCVSS 10.0Proof of conceptEPSS 14%

      extremail · extremailOct 15, 2007

    • Stack-based buffer overflow in eXtremail 2.1.1 and earlier allows remote attackers to execute arbitrary code via a long DNS response.

      CriticalCVSS 10.0Proof of conceptEPSS 7%

      extremail · extremailApr 24, 2007

    • Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privileges via format speci

      CriticalCVSS 10.0Proof of conceptEPSS 5%

      extremail · extremailJun 21, 2001

    • Extremail 1.5.9 does not check passwords correctly when they are all digits or begin with a digit, which allows remote attackers to gain pri

      CriticalCVSS 10.0No exploitEPSS 3%

      extremail · extremailNov 23, 2004

    • eXtremail 2.1.1 and earlier does not verify the ID field (aka transaction id) in DNS responses, which makes it easier for remote attackers t

      CriticalCVSS 10.0No exploitEPSS 2%

      extremail · extremailApr 24, 2007

    • Buffer overflow in eXtremail 2.1 has unknown impact and attack vectors, as demonstrated by VulnDisco Pack.

      CriticalCVSS 10.0No exploitEPSS 1%

      extremail · extremailJan 12, 2007