Record summary

CVE-2005-2409 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.

Description

Format string vulnerability in util.c in nbsmtp 0.99 and earlier, while running in debug mode, allows remote attackers to execute arbitrary code via format string specifiers that are not properly handled in a syslog call.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBnbSMTP 0.99 - 'util.c' Client-Side Command ExecutionExploitDB exploitby CoKiNot analyzed1 file
ExploitDB

PoC details

References

7