2 results (0.002 seconds)

CVSS: 9.8EPSS: 6%CPEs: 2EXPL: 1

11 May 2005 — Format string vulnerability in dSMTP (dsmtp.exe) in DMail 3.1a allows remote attackers to execute arbitrary code via format string specifiers in the xtellmail command. • http://marc.info/?l=bugtraq&m=111531804617905&w=2 •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

11 May 2005 — DList (dlist.exe) in DMail 3.1a allows remote attackers to bypass authentication, read log files, and shutdown the system via a sendlog command with an incorrect password hash, which is not properly handled by the _cmd_sendlog function. • http://secunia.com/advisories/15242 •