CVE-2003-0263

Floosietek FTGate Pro Mail Server <1.22 - RCE

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2003-0263. PoCs published by Dennis Rand.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in Floosietek FTGate PRO mail server by sending an overly long SMTP 'Rcpt To' argument. The PoC attempts to crash the service and potentially overwrite the exception handler to achieve remote code execution as SYSTEM.

Description

Multiple buffer overflows in Floosietek FTGate Pro Mail Server (FTGatePro) 1.22 allow remote attackers to execute arbitrary code via long (1) MAIL FROM or (2) RCPT TO commands.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Dennis Rand · perldoswindows
https://www.exploit-db.com/exploits/22569

This exploit targets a buffer overflow vulnerability in Floosietek FTGate PRO mail server by sending an overly long SMTP 'Rcpt To' argument. The PoC attempts to crash the service and potentially overwrite the exception handler to achieve remote code execution as SYSTEM.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: Floosietek FTGate PRO Mail Server v. 1.22 (HotFix 1328)
No auth needed
Prerequisites: Network access to the SMTP port (25) of the target server
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Dennis Rand · perldoswindows
https://www.exploit-db.com/exploits/22568

This exploit targets a buffer overflow vulnerability in Floosietek FTGate PRO mail server by sending an overly long SMTP 'Mail From' argument. It attempts to overwrite the exception handler on the stack, potentially leading to remote code execution with SYSTEM privileges.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Theoretical
Target: Floosietek FTGate PRO Mail Server v. 1.22 (HotFix 1328)
No auth needed
Prerequisites: Network access to the SMTP port (25) of the target server
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (5)

Core 5
Core References
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/7506
Mailing List mailing-list x_refsource_bugtraq
http://marc.info/?l=bugtraq&m=105223471822836&w=2
Third Party Advisory mailing-list x_refsource_vulnwatch
http://archives.neohapsis.com/archives/vulnwatch/2003-q2/0052.html
Exploit, Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/7508
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/11951

Scores

EPSS 0.1157
EPSS Percentile 95.5%

Details

Status published
Products (1)
floosietek/ftgatepro 1.22_1328
Published May 27, 2003
Tracked Since Feb 18, 2026