
CVE-2001-0715
https://notcve.org/view.php?id=CVE-2001-0715
12 Oct 2001 — Sendmail before 8.12.1, without the RestrictQueueRun option enabled, allows local users to obtain potentially sensitive information about the mail queue by setting debugging flags to enable debug mode. • ftp://patches.sgi.com/support/free/security/advisories/20011101-01-I •

CVE-1999-1109 – Eric Allman Sendmail 8.9.1/8.9.3 - ETRN Denial of Service
https://notcve.org/view.php?id=CVE-1999-1109
22 Dec 1999 — Sendmail before 8.10.0 allows remote attackers to cause a denial of service by sending a series of ETRN commands then disconnecting from the server, while Sendmail continues to process the commands after the connection has been terminated. • https://www.exploit-db.com/exploits/19701 •

CVE-1999-0365
https://notcve.org/view.php?id=CVE-1999-0365
04 Feb 1999 — The metamail package allows remote command execution using shell metacharacters that are not quoted in a mailcap entry. • https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0365 •

CVE-1999-0478
https://notcve.org/view.php?id=CVE-1999-0478
01 Dec 1998 — Denial of service in HP-UX sendmail 8.8.6 related to accepting connections. • http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=HPSBUX9904-097 •

CVE-1999-1309
https://notcve.org/view.php?id=CVE-1999-1309
30 Aug 1996 — Sendmail before 8.6.7 allows local users to gain root access via a large value in the debug (-d) command line option. • http://www.cert.org/advisories/CA-94.12.sendmail.vulnerabilities •