4.6
CVSSv2

CVE-2006-0331

Published: 21/01/2006 Updated: 19/10/2018
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Buffer overflow in Change passwd 3.1 (chpasswd) SquirrelMail plugin allows local users to execute arbitrary code via long command line arguments.

Vulnerable Product Search on Vulmon Subscribe to Product

thiago melo de paula change passwd 3.1

Exploits

/* Change passwd 31 (SquirrelMail plugin ) Coded by rod hedor web-- lezrcom [local exploit] * Multiple buffer overflows are present in the handling of command line arguements in chpasswd The bug allows a hacker to exploit the process to run arbitrary code */ #include <stdioh> #include <stdlibh> const char shellcod ...