University OF Cambridge
University OF Cambridge Exim: vulnerabilidades y CVE
University OF Cambridge Exim tiene 10 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE10
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2005-0021 | Alta (7.2) | 2.6% | — | 2 may 2005 | Multiple buffer overflows in Exim before 4.43 may allow attackers to execute arbitrary code via (1) an IPv6 address with more than 8 components, as demonstrated using the -be command line option, which triggers an… |
| CVE-2005-0022 | Media (4.6) | 0.72% | — | 2 may 2005 | Buffer overflow in the spa_base64_to_bits function in Exim before 4.43, as originally obtained from Samba code, and as called by the auth_spa_client function, may allow attackers to execute arbitrary code during SPA… |
| CVE-2004-0400 | Alta (7.5) | 7.0% | — | 7 jul 2004 | Stack-based buffer overflow in Exim 4 before 4.33, when the headers_check_syntax option is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code during the header check. |
| CVE-2004-0399 | Alta (7.5) | 21% | — | 7 jul 2004 | Stack-based buffer overflow in Exim 3.35, and other versions before 4, when the sender_verify option is true, allows remote attackers to cause a denial of service and possibly execute arbitrary code during sender… |
| CVE-2003-0743 | Alta (7.5) | 5.7% | — | 20 oct 2003 | Heap-based buffer overflow in smtp_in.c for Exim 3 (exim3) before 3.36 and Exim 4 (exim4) before 4.21 may allow remote attackers to execute arbitrary code via an invalid (1) HELO or (2) EHLO argument with a large number… |
| CVE-2002-1381 | Alta (7.2) | 2.3% | — | 23 dic 2002 | Format string vulnerability in daemon.c for Exim 4.x through 4.10, and 3.x through 3.36, allows exim administrative users to execute arbitrary code by modifying the pid_file_path value. |
| CVE-2002-0274 | Media (4.6) | 0.38% | — | 31 may 2002 | Exim 3.34 and earlier may allow local users to gain privileges via a buffer overflow in long -C (configuration file) and other command line arguments. |
| CVE-2001-0889 | Alta (7.5) | 6.4% | — | 19 dic 2001 | Exim 3.22 and earlier, in some configurations, does not properly verify the local part of an address when redirecting the address to a pipe, which could allow remote attackers to execute arbitrary commands via shell… |
| CVE-2001-0690 | Alta (7.5) | 12% | — | 20 sept 2001 | Format string vulnerability in exim (3.22-10 in Red Hat, 3.12 in Debian and 3.16 in Conectiva) in batched SMTP mode allows a remote attacker to execute arbitrary code via format strings in SMTP mail headers. |
| CVE-1999-0971 | Alta (7.2) | 0.69% | — | 22 jul 1997 | Buffer overflow in Exim allows local users to gain root privileges via a long :include: option in a .forward file. |