7.5
CVSSv2

CVE-2000-0592

Published: 27/06/2000 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflows in POP3 service in WinProxy 2.0 and 2.0.1 allow remote malicious users to execute arbitrary commands via long USER, PASS, LIST, RETR, or DELE commands.

Vulnerable Product Search on Vulmon Subscribe to Product

sapporoworks sapporoworks winproxy 2.0

sapporoworks sapporoworks winproxy 2.0.1

Exploits

source: wwwsecurityfocuscom/bid/1400/info Multiple unchecked buffers exist in the POP3 and HTTP Proxy components of SapporoWorks WinProxy which could open up the possibilities of denial of service attacks or remote execution of arbitrary code Performing a "GET /" on port 8080 will cause WinProxy to stop responding The USER, PASS, LIST ...