Record summary

CVE-2004-0524 has a selected CVSS score of 10.0; EIP currently links 2 catalogued exploits.

Description

Buffer overflow in the chpasswd command in the Change_passwd plugin before 4.0, as used in SquirrelMail, allows local users to gain root privileges via a long user name.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
2

Proofs of concept

2

Catalogued exploits

ExploitDBSquirrelMail - 'chpasswd' Local Buffer OverflowExploitDB exploitby x314Not analyzed1 file
ExploitDB

PoC details
ExploitDBSquirrelMail - 'chpasswd' Local Privilege Escalation (Brute Force)ExploitDB exploitby BytesNot analyzed1 file
ExploitDB

PoC details

References

7