Vulnerability Details CVE-2003-0266
Multiple buffer overflows in SLWebMail 3 on Windows systems allows remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a long Language parameter to showlogin.dll, (2) a long CompanyID parameter to recman.dll, (3) a long CompanyID parameter to admin.dll, or (4) a long CompanyID parameter to globallogin.dll.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.016
EPSS Ranking 81.3%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2003-0266
-
cpe:2.3:a:bvrp_software:slwebmail:3.0