7.5
CVSSv2

CVE-2005-0107

Published: 25/02/2005 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

bsmtpd 2.3 and previous versions does not properly sanitize e-mail addresses, which allows remote malicious users to execute arbitrary commands.

Vulnerable Product Search on Vulmon Subscribe to Product

debian bsmtpd

Vendor Advisories

Bastian Blank discovered a vulnerability in bsmtpd, a batched SMTP mailer for sendmail and postfix Unsanitised addresses can cause the execution of arbitrary commands during alleged mail delivery For the stable distribution (woody) this problem has been fixed in version 23pl8b-12woody1 For the unstable distribution (sid) this problem has been f ...