2 results (0.003 seconds)

CVSS: 10.0EPSS: 19%CPEs: 1EXPL: 0

04 Apr 2006 — Format string vulnerability in the SMTP server for McAfee WebShield 4.5 MR2 and earlier allows remote attackers to execute arbitrary code via format strings in the domain name portion of a destination address, which are not properly handled when a bounce message is constructed. • http://secunia.com/advisories/19491 •

CVSS: 9.8EPSS: 9%CPEs: 15EXPL: 0

04 Sep 2001 — Buffer overflow in the (1) smap/smapd and (2) CSMAP daemons for Gauntlet Firewall 5.0 through 6.0 allows remote attackers to execute arbitrary code via a crafted mail message. • ftp://patches.sgi.com/support/free/security/advisories/20011104-01-I • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •