10

CVE-2001-1355

Buffer overflows in NetWin Authentication Module (NWAuth) 3.0b and earlier, as implemented in DMail, SurgeFTP, and possibly other packages, could allow attackers to execute arbitrary code via long arguments to (1) the -del command or (2) the -lookup command.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Netwin ≫ Dmail Version 2.5d
Netwin ≫ Dmail Version 2.7
Netwin ≫ Dmail Version 2.7q
Netwin ≫ Dmail Version 2.7r
Netwin ≫ Dmail Version 2.8e
Netwin ≫ Dmail Version 2.8f
Netwin ≫ Dmail Version 2.8g
Netwin ≫ Dmail Version 2.8h
Netwin ≫ Dmail Version 2.8i
Netwin ≫ Surgeftp Version 1.0b
Netwin ≫ Surgeftp Version 2.0a
Netwin ≫ Surgeftp Version 2.0b
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.57% 0.879
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://online.securityfocus.com/archive/1/198293
Vendor Advisory
http://www.securityfocus.com/bid/3077
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/6865