CVE-1999-1529

Trend Micro Interscan VirusWall 3.23/3.3 for NT - Buffer Overflow via HELO Command

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-1999-1529.

AI-analyzed exploit summary This is a functional exploit for CVE-1999-1529, targeting a buffer overflow in the HELO command of the InterScan VirusWall SMTP gateway. The assembly code constructs a malicious payload to achieve remote code execution (RCE) by overflowing the buffer with NOP sleds and shellcode.

Description

A buffer overflow exists in the HELO command in Trend Micro Interscan VirusWall SMTP gateway 3.23/3.3 for NT, which may allow an attacker to execute arbitrary code.

Exploits (2)

exploitdb WORKING POC
remotewindows
https://www.exploit-db.com/exploits/19614

This is a functional exploit for CVE-1999-1529, targeting a buffer overflow in the HELO command of the InterScan VirusWall SMTP gateway. The assembly code constructs a malicious payload to achieve remote code execution (RCE) by overflowing the buffer with NOP sleds and shellcode.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: InterScan VirusWall 3.23/3.3
No auth needed
Prerequisites: Network access to the vulnerable SMTP gateway · Target system running InterScan VirusWall 3.23/3.3
devstral-2 · analyzed Feb 19, 2026 Full analysis →
exploitdb WORKING POC
perlremotewindows
https://www.exploit-db.com/exploits/19612

This Perl script exploits a buffer overflow in the HELO command of the InterScan VirusWall SMTP gateway (versions 3.32 builds 1011 and 1022). It sends a crafted HELO command with 4075 'a' characters to trigger a DoS or potential RCE, depending on the system configuration.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: InterScan VirusWall SMTP Gateway (versions 3.32 builds 1011 and 1022)
No auth needed
Prerequisites: Network access to the target SMTP server · Target running vulnerable InterScan VirusWall version
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (8)

Core 8
Core References
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/787
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=94204166130782&w=2
Mailing List mailing-list x_refsource_ntbugtraq
http://marc.info/?l=ntbugtraq&m=94199707625818&w=2
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=94201512111092&w=2
Mailing List mailing-list x_refsource_ntbugtraq
http://marc.info/?l=ntbugtraq&m=94208143007829&w=2
Exploit, Vendor Advisory mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/55551
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=94210427406568&w=2
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/3465

Scores

EPSS 0.1502
EPSS Percentile 94.7%

Details

Status published
Products (2)
trend_micro/interscan_viruswall 3.3
trend_micro/interscan_viruswall 3.23
Published Nov 07, 1999
Tracked Since Feb 18, 2026