CVE-2019-11395
CRITICALMailCarrier 2.51 - Remote Code Execution via Buffer Overflow in SMTP/POP3 Commands
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2019-11395. PoCs published by RedAlien00, RafaelBicas, caioprince.
AI-analyzed exploit summary This repository contains a functional Python3 exploit for CVE-2019-11395, a buffer overflow vulnerability in MailCarrier. The exploit sends a crafted payload to trigger remote code execution via a reverse shell.
Description
A buffer overflow in MailCarrier 2.51 allows remote attackers to execute arbitrary code via a long string, as demonstrated by SMTP RCPT TO, POP3 USER, POP3 LIST, POP3 TOP, or POP3 RETR.
Exploits (3)
This repository contains a functional Python3 exploit for CVE-2019-11395, a buffer overflow vulnerability in MailCarrier. The exploit sends a crafted payload to trigger remote code execution via a reverse shell.
The repository contains a functional Python script demonstrating a buffer overflow exploit for CVE-2019-11395 in MailCarrier 2.51 via the POP3 USER command. The PoC includes a structured payload with a buffer, EIP overwrite, NOPs, and a placeholder for shellcode, along with detailed steps for exploitation.
This repository contains a functional exploit for CVE-2019-11395, a buffer overflow vulnerability in MailCarrier 2.51. The exploit targets the POP3 USER command, sending a crafted payload with a reverse shell to achieve remote code execution.
References (10)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H