Exim

Exim

66 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 77.17%
  • Veröffentlicht 21.02.2025 13:15:11
  • Zuletzt bearbeitet 18.12.2025 19:16:22

Exim 4.98 before 4.98.1, when SQLite hints and ETRN serialization are used, allows remote SQL injection. (Resolving SQL injection requires an update to 4.99.1 in certain non-default rate-limit configurations.)

Exploit
  • EPSS 41.23%
  • Veröffentlicht 04.07.2024 15:15:10
  • Zuletzt bearbeitet 10.07.2025 22:15:25

Exim through 4.97.1 misparses a multiline RFC 2231 header filename, and thus remote attackers can bypass a $mime_filename extension-blocking protection mechanism, and potentially deliver executable attachments to the mailboxes of end users.

  • EPSS 9.96%
  • Veröffentlicht 03.05.2024 03:15:50
  • Zuletzt bearbeitet 07.08.2025 18:04:28

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific fl...

  • EPSS 3.16%
  • Veröffentlicht 03.05.2024 03:15:50
  • Zuletzt bearbeitet 04.11.2025 20:16:48

Exim SMTP Challenge Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability....

  • EPSS 1.61%
  • Veröffentlicht 03.05.2024 03:15:50
  • Zuletzt bearbeitet 03.11.2025 22:16:26

Exim dnsdb Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Exim. Authentication is not required to exploit this vulnerability...

  • EPSS 5.72%
  • Veröffentlicht 03.05.2024 03:15:50
  • Zuletzt bearbeitet 03.11.2025 22:16:26

Exim Improper Neutralization of Special Elements Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability...

  • EPSS 28.08%
  • Veröffentlicht 03.05.2024 03:15:49
  • Zuletzt bearbeitet 04.11.2025 20:16:48

Exim NTLM Challenge Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Exim. Authentication is not required to exploit this vulnerability....

Exploit
  • EPSS 1.08%
  • Veröffentlicht 24.12.2023 06:15:07
  • Zuletzt bearbeitet 04.11.2025 19:16:21

Exim before 4.97.1 allows SMTP smuggling in certain PIPELINING/CHUNKING configurations. Remote attackers can use a published exploitation technique to inject e-mail messages with a spoofed MAIL FROM address, allowing bypass of an SPF protection mecha...

  • EPSS 0.8%
  • Veröffentlicht 20.10.2022 20:15:09
  • Zuletzt bearbeitet 23.05.2025 18:29:51

A vulnerability was found in Exim and classified as problematic. This issue affects the function dmarc_dns_lookup of the file dmarc.c of the component DMARC Handler. The manipulation leads to use after free. The attack may be initiated remotely. The ...

  • EPSS 3.97%
  • Veröffentlicht 17.10.2022 18:15:12
  • Zuletzt bearbeitet 03.11.2025 22:16:00

A vulnerability was found in Exim and classified as problematic. This issue affects some unknown processing of the component Regex Handler. The manipulation leads to use after free. The name of the patch is 4e9ed49f8f12eb331b29bd5b6dc3693c520fddc2. I...