Записи extremail
7 опубликованных записей вендора extremail.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-189 Numeric Errors1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEПрофиль атаки
Все записи
7 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
46В плане | CVE-2007-5466Proof of concept | Multiple buffer overflows in eXtremail 2.1.1 and earlier allow remote attackers to (1) have an unknown impact by sending multiple long strinextremail · extremail · CWE-119 | Критическая10,0 | — | 19,9 % | 15 окт. 2007 г. |
44В плане | CVE-2007-5467Proof of concept | Integer overflow in eXtremail 2.1.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, vextremail · extremail · CWE-189 | Критическая10,0 | — | 13,5 % | 15 окт. 2007 г. |
42В плане | CVE-2007-2187Proof of concept | Stack-based buffer overflow in eXtremail 2.1.1 and earlier allows remote attackers to execute arbitrary code via a long DNS response.extremail · extremail | Критическая10,0 | — | 6,8 % | 24 апр. 2007 г. |
42В плане | CVE-2001-1078Proof of concept | Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privileges via format speciextremail · extremail | Критическая10,0 | — | 5,4 % | 21 июн. 2001 г. |
41В плане | CVE-2004-0332Эксплойта нет | Extremail 1.5.9 does not check passwords correctly when they are all digits or begin with a digit, which allows remote attackers to gain priextremail · extremail | Критическая10,0 | — | 2,5 % | 23 нояб. 2004 г. |
41В плане | CVE-2007-2188Эксплойта нет | eXtremail 2.1.1 and earlier does not verify the ID field (aka transaction id) in DNS responses, which makes it easier for remote attackers textremail · extremail | Критическая10,0 | — | 2,4 % | 24 апр. 2007 г. |
40В плане | CVE-2006-6926Эксплойта нет | Buffer overflow in eXtremail 2.1 has unknown impact and attack vectors, as demonstrated by VulnDisco Pack.extremail · extremail | Критическая10,0 | — | 1,4 % | 12 янв. 2007 г. |
- CVE-2007-546646В плане
Multiple buffer overflows in eXtremail 2.1.1 and earlier allow remote attackers to (1) have an unknown impact by sending multiple long strin
КритическаяCVSS 10,0Proof of conceptEPSS 20 %extremail · extremail15 окт. 2007 г.
- CVE-2007-546744В плане
Integer overflow in eXtremail 2.1.1 and earlier allows remote attackers to cause a denial of service, and possibly execute arbitrary code, v
КритическаяCVSS 10,0Proof of conceptEPSS 14 %extremail · extremail15 окт. 2007 г.
- CVE-2007-218742В плане
Stack-based buffer overflow in eXtremail 2.1.1 and earlier allows remote attackers to execute arbitrary code via a long DNS response.
КритическаяCVSS 10,0Proof of conceptEPSS 7 %extremail · extremail24 апр. 2007 г.
- CVE-2001-107842В плане
Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privileges via format speci
КритическаяCVSS 10,0Proof of conceptEPSS 5 %extremail · extremail21 июн. 2001 г.
- CVE-2004-033241В плане
Extremail 1.5.9 does not check passwords correctly when they are all digits or begin with a digit, which allows remote attackers to gain pri
КритическаяCVSS 10,0Эксплойта нетEPSS 3 %extremail · extremail23 нояб. 2004 г.
- CVE-2007-218841В плане
eXtremail 2.1.1 and earlier does not verify the ID field (aka transaction id) in DNS responses, which makes it easier for remote attackers t
КритическаяCVSS 10,0Эксплойта нетEPSS 2 %extremail · extremail24 апр. 2007 г.
- CVE-2006-692640В плане
Buffer overflow in eXtremail 2.1 has unknown impact and attack vectors, as demonstrated by VulnDisco Pack.
КритическаяCVSS 10,0Эксплойта нетEPSS 1 %extremail · extremail12 янв. 2007 г.