CVE-2005-2409

nbsmtp <0.99 - RCE

Title source: llm

Description

Format string vulnerability in util.c in nbsmtp 0.99 and earlier, while running in debug mode, allows remote attackers to execute arbitrary code via format string specifiers that are not properly handled in a syslog call.

Exploits (1)

exploitdb WORKING POC VERIFIED
by CoKi · cremotelinux
https://www.exploit-db.com/exploits/1138

Scores

EPSS 0.1145
EPSS Percentile 93.6%

Details

Status published
Products (1)
nbsmtp/nbsmtp < 0.99
Published Aug 01, 2005
Tracked Since Feb 18, 2026