9.3
CVSSv2

CVE-2008-0434

Published: 23/01/2008 Updated: 15/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Format string vulnerability in the AXIMilter module in AXIGEN Mail Server 5.0.2 allows remote malicious users to execute arbitrary code via format string specifiers in the CNHO command.

Vulnerable Product Search on Vulmon Subscribe to Product

gecad technologies axigen mail server 5.0.2

Exploits

/* * Axigen 50x AXIMilter Format String Exploit * * by hempel (JAN 16 2008) * * thx to mu-b (digit-labsorg) * */ #include <stdioh> #include <netinet/inh> #include <sys/socketh> #include <sys/typesh> #include <sys/uioh> #include <unistdh> #include <stringh> char buf[] = "FROM:\r\nEHLO: ...