Vulnerabilities
Vulnerable Software
Neomutt:  >> Neomutt  >> 20160404  Security Vulnerabilities
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with an automatic subscription.
CVSS Score
9.8
EPSS Score
0.044
Published
2018-07-17
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/message.c has a stack-based buffer overflow for a FETCH response with a long RFC822.SIZE field.
CVSS Score
9.8
EPSS Score
0.025
Published
2018-07-17
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They have a buffer overflow via base64 data.
CVSS Score
9.8
EPSS Score
0.044
Published
2018-07-17
An issue was discovered in NeoMutt before 2018-07-16. nntp_add_group in newsrc.c has a stack-based buffer overflow because of incorrect sscanf usage.
CVSS Score
9.8
EPSS Score
0.008
Published
2018-07-17
An issue was discovered in NeoMutt before 2018-07-16. nntp.c proceeds even if memory allocation fails for messages data.
CVSS Score
9.8
EPSS Score
0.008
Published
2018-07-17
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. pop.c does not forbid characters that may have unsafe interaction with message-cache pathnames, as demonstrated by a '/' character.
CVSS Score
9.8
EPSS Score
0.054
Published
2018-07-17


Contact Us

Shodan ® - All rights reserved