Перейти к содержимому
Noroxi

Записи sendmail

33 опубликованных записей вендора sendmail.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
1 · 3 %
Pre-auth RCE
6
С записью об исправлении
60,6 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

33 записей
  • CVE-2002-1337
    62На этой неделе

    Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related t

    КритическаяCVSS 10,0Proof of conceptEPSS 73 %

    sendmail · sendmail7 мар. 2003 г.

  • CVE-2003-0694
    60На этой неделе

    The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using

    КритическаяCVSS 10,0Готовый эксплойтEPSS 66 %

    sendmail · advanced message server6 окт. 2003 г.

  • CVE-2003-0161
    52В плане

    The prescan() function in the address parser (parseaddr.c) in Sendmail before 8.12.9 does not properly handle certain conversions from char

    КритическаяCVSS 10,0Proof of conceptEPSS 39 %

    sendmail · sendmail2 апр. 2003 г.

  • CVE-2006-0058
    39Наблюдать

    Signal handler race condition in Sendmail 8.13.x before 8.13.6 allows remote attackers to execute arbitrary code by triggering timeouts in a

    ВысокаяCVSS 7,6Proof of conceptEPSS 29 %

    sendmail · sendmail22 мар. 2006 г.

  • CVE-2003-0681
    37Наблюдать

    A "potential buffer overflow in ruleset parsing" for Sendmail 8.12.9, when using the nonstandard rulesets (1) recipient (2), final, or (3) m

    ВысокаяCVSS 7,5Proof of conceptEPSS 22 %

    sendmail · advanced message server6 окт. 2003 г.

  • CVE-2007-2246
    32Наблюдать

    Unspecified vulnerability in HP-UX B.11.00 and B.11.11, when running sendmail 8.9.3 or 8.11.1; and HP-UX B.11.23 when running sendmail 8.11.

    ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %

    hp · hp-ux25 апр. 2007 г.

  • CVE-2006-4434
    31Наблюдать

    Use-after-free vulnerability in Sendmail before 8.13.8 allows remote attackers to cause a denial of service (crash) via a long "header line"

    ВысокаяCVSS 7,5Эксплойта нетEPSS 5 %

    sendmail · sendmail28 авг. 2006 г.

  • CVE-2002-0906
    31Наблюдать

    Buffer overflow in Sendmail before 8.12.5, when configured to use a custom DNS map to query TXT records, allows remote attackers to cause a

    ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %

    sendmail · sendmail4 окт. 2002 г.

  • CVE-2009-4565
    31Наблюдать

    sendmail before 8.14.4 does not properly handle a '\0' character in a Common Name (CN) field of an X.509 certificate, which (1) allows man-i

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    sendmail · sendmail4 янв. 2010 г.

  • CVE-2002-2261
    31Наблюдать

    Sendmail 8.9.0 through 8.12.6 allows remote attackers to bypass relaying restrictions enforced by the 'check_relay' function by spoofing a b

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    sendmail · sendmail31 дек. 2002 г.

  • CVE-2021-3618
    30Наблюдать

    ALPACA is an application layer protocol content confusion attack, exploiting TLS servers implementing different protocols but using compatib

    ВысокаяCVSS 7,4Эксплойта нетEPSS 2 %

    f5 · nginx23 мар. 2022 г.

  • CVE-1999-1592
    30Наблюдать

    Multiple unspecified vulnerabilities in sendmail 5, as installed on Sun SunOS 4.1.3_U1 and 4.1.4, have unspecified attack vectors and impact

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    sun · sunos31 дек. 1999 г.

  • CVE-2006-7175
    30Наблюдать

    The version of Sendmail 8.13.1-2 on Red Hat Enterprise Linux 4 Update 4 and earlier does not allow the administrator to disable SSLv2 encryp

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    sendmail · sendmail27 мар. 2007 г.

  • CVE-1999-1580
    28Наблюдать

    SunOS sendmail 5.59 through 5.65 uses popen to process a forwarding host argument, which allows local users to gain root privileges by modif

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    sendmail · sendmail23 авг. 1995 г.

  • CVE-1999-1309
    28Наблюдать

    Sendmail before 8.6.7 allows local users to gain root access via a large value in the debug (-d) command line option.

    ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %

    sendmail · sendmail30 авг. 1996 г.

  • CVE-2003-0308
    28Наблюдать

    The Sendmail 8.12.3 package in Debian GNU/Linux 3.0 does not securely create temporary files, which could allow local users to gain addition

    ВысокаяCVSS 7,2Эксплойта нетEPSS 0 %

    sendmail · sendmail15 мая 2003 г.

  • CVE-2002-2423
    25Наблюдать

    Sendmail 8.12.0 through 8.12.6 truncates log messages longer than 100 characters, which allows remote attackers to prevent the IP address fr

    СредняяCVSS 6,4Эксплойта нетEPSS 1 %

    sendmail · sendmail31 дек. 2002 г.

  • CVE-2009-1490
    24Наблюдать

    Heap-based buffer overflow in Sendmail before 8.13.2 allows remote attackers to cause a denial of service (daemon crash) and possibly execut

    СредняяCVSS 5,0Proof of conceptEPSS 13 %

    sendmail · sendmail5 мая 2009 г.

  • CVE-1999-1109
    22Наблюдать

    Sendmail before 8.10.0 allows remote attackers to cause a denial of service by sending a series of ETRN commands then disconnecting from the

    СредняяCVSS 5,0Proof of conceptEPSS 7 %

    sendmail · sendmail22 дек. 1999 г.

  • CVE-2006-1173
    22Наблюдать

    Sendmail before 8.13.7 allows remote attackers to cause a denial of service via deeply nested, malformed multipart MIME messages that exhaus

    СредняяCVSS 5,0Эксплойта нетEPSS 5 %

    sendmail · sendmail7 июн. 2006 г.

  • CVE-2003-0688
    21Наблюдать

    The DNS map code in Sendmail 8.12.8 and earlier, when using the "enhdnsbl" feature, does not properly initialize certain data structures, wh

    СредняяCVSS 5,0Эксплойта нетEPSS 4 %

    sendmail · sendmail20 окт. 2003 г.

  • CVE-2023-51765
    21Наблюдать

    sendmail through 8.17.2 allows SMTP smuggling in certain configurations.

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    sendmail · sendmail24 дек. 2023 г.

  • CVE-2005-2070
    20Наблюдать

    The ClamAV Mail fILTER (clamav-milter) 0.84 through 0.85d, when used in Sendmail using long timeouts, allows remote attackers to cause a den

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    sendmail · sendmail29 июн. 2005 г.

  • CVE-1999-0478
    20Наблюдать

    Denial of service in HP-UX sendmail 8.8.6 related to accepting connections.

    СредняяCVSS 5,0Эксплойта нетEPSS 1 %

    sendmail · sendmail1 дек. 1998 г.

  • CVE-2006-7176
    18Наблюдать

    The version of Sendmail 8.13.1-2 on Red Hat Enterprise Linux 4 Update 4 and earlier does not reject the "localhost.localdomain" domain name

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    sendmail · sendmail27 мар. 2007 г.