Vulnerabilities
Vulnerable Software
Sendmail:  >> Sendmail  >> 3.0.1  Security Vulnerabilities
Buffer overflow in Sendmail 5.79 to 8.12.7 allows remote attackers to execute arbitrary code via certain formatted address fields, related to sender and recipient header comments as processed by the crackaddr function of headers.c.
CVSS Score
10.0
EPSS Score
0.634
Published
2003-03-07
Sendmail before 8.12.1 does not properly drop privileges when the -C option is used to load custom configuration files, which allows local users to gain privileges via malformed arguments in the configuration file whose names contain characters with the high bit set, such as (1) macro names that are one character long, (2) a variable setting which is processed by the setoption function, or (3) a Modifiers setting which is processed by the getmodifiers function.
CVSS Score
4.6
EPSS Score
0.001
Published
2001-10-30
Sendmail before 8.12.1, without the RestrictQueueRun option enabled, allows local users to cause a denial of service (data loss) by (1) setting a high initial message hop count option (-h), which causes Sendmail to drop queue entries, (2) via the -qR option, or (3) via the -qS option.
CVSS Score
2.1
EPSS Score
0.001
Published
2001-10-30
Sendmail before 8.12.1, without the RestrictQueueRun option enabled, allows local users to obtain potentially sensitive information about the mail queue by setting debugging flags to enable debug mode.
CVSS Score
2.1
EPSS Score
0.001
Published
2001-10-30
Sendmail before 8.10.0 allows remote attackers to cause a denial of service by sending a series of ETRN commands then disconnecting from the server, while Sendmail continues to process the commands after the connection has been terminated.
CVSS Score
5.0
EPSS Score
0.077
Published
1999-12-22
Denial of service in HP-UX sendmail 8.8.6 related to accepting connections.
CVSS Score
5.0
EPSS Score
0.006
Published
1998-12-01
Sendmail before 8.6.7 allows local users to gain root access via a large value in the debug (-d) command line option.
CVSS Score
7.2
EPSS Score
0.001
Published
1996-08-30


Contact Us

Shodan ® - All rights reserved