2 results (0.001 seconds)

CVSS: 10.0EPSS: 72%CPEs: 1EXPL: 0

Format string vulnerability in the SMTP server for McAfee WebShield 4.5 MR2 and earlier allows remote attackers to execute arbitrary code via format strings in the domain name portion of a destination address, which are not properly handled when a bounce message is constructed. • http://secunia.com/advisories/19491 http://securityreason.com/securityalert/671 http://securitytracker.com/id?1015861 http://www.osvdb.org/24366 http://www.securityfocus.com/archive/1/429812/100/0/threaded http://www.securityfocus.com/bid/16742 http://www.vupen.com/english/advisories/2006/1219 https://exchange.xforce.ibmcloud.com/vulnerabilities/25621 •

CVSS: 7.5EPSS: 2%CPEs: 15EXPL: 0

Buffer overflow in the (1) smap/smapd and (2) CSMAP daemons for Gauntlet Firewall 5.0 through 6.0 allows remote attackers to execute arbitrary code via a crafted mail message. • ftp://patches.sgi.com/support/free/security/advisories/20011104-01-I http://www.cert.org/advisories/CA-2001-25.html http://www.kb.cert.org/vuls/id/206723 http://www.securityfocus.com/bid/3290 https://exchange.xforce.ibmcloud.com/vulnerabilities/7088 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •