Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-16928

Exim 4.92 through 4.92.2 allows remote code execution, a different vulnerability than CVE-2019-15846. There is a heap-based buffer overflow in string_vformat in string.c involving a long EHLO command.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.886
EPSS Ranking 99.5%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Proposed Action
Exim contains an out-of-bounds write vulnerability which can allow for remote code execution.
Ransomware Campaign
Unknown
References
Products affected by CVE-2019-16928


Contact Us

Shodan ® - All rights reserved