CVE-1999-0207

Majordomo - Remote Command Execution via Reply-To Field

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-1999-0207. PoCs published by Razvan Dragomirescu.

AI-analyzed exploit summary This exploit leverages a command injection vulnerability in Majordomo versions prior to 1.91 by crafting a malicious email header in the 'Reply-to' field. The payload executes arbitrary commands via shell metacharacters, leading to remote code execution (RCE) with the privileges of the Majordomo process.

Description

Remote attacker can execute commands through Majordomo using the Reply-To field and a "lists" command.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Razvan Dragomirescu · textremotelinux
https://www.exploit-db.com/exploits/20597

This exploit leverages a command injection vulnerability in Majordomo versions prior to 1.91 by crafting a malicious email header in the 'Reply-to' field. The payload executes arbitrary commands via shell metacharacters, leading to remote code execution (RCE) with the privileges of the Majordomo process.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Majordomo < 1.91
No auth needed
Prerequisites: Access to an SMTP server to send crafted email · Majordomo configured with 'advertise' or 'noadvertise' directives
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Third Party Advisory, VDB Entry x_refsource_misc
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0207

Scores

EPSS 0.0872
EPSS Percentile 94.5%

Details

Status published
Products (2)
great_circle_associates/majordomo 1.90
great_circle_associates/majordomo 1.91
Published Jun 09, 1994
Tracked Since Feb 18, 2026