Exploitation Summary
EIP tracks 1 public exploit for CVE-2000-0442. PoCs published by Prizm.
AI-analyzed exploit summary This exploit targets a buffer overflow in Qpopper 2.53 by crafting a malicious email with shellcode in the X-UIDL header and a format string in the 'From:' field. The 'euidl' command triggers the overflow, allowing arbitrary code execution with group 'mail' permissions.
Description
Qpopper 2.53 and earlier allows local users to gain privileges via a formatting string in the From: header, which is processed by the euidl command.
Exploits (1)
This exploit targets a buffer overflow in Qpopper 2.53 by crafting a malicious email with shellcode in the X-UIDL header and a format string in the 'From:' field. The 'euidl' command triggers the overflow, allowing arbitrary code execution with group 'mail' permissions.