EIP-2026-115296

PRE-CVE

Free SMTP Server 2.5 - Denial of Service (PoC)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115296. PoCs published by Metin Yunus Kandemir.

AI-analyzed exploit summary This PoC exploits a local denial-of-service vulnerability in Free SMTP Server 2.5 by sending increasingly large buffers to the SMTP service on port 25, causing it to crash. The exploit uses a simple socket connection to flood the server with 'A' characters, demonstrating a buffer overflow or resource exhaustion flaw.

Description

Free SMTP Server 2.5 - Denial of Service (PoC)

Exploits (1)

exploitdb WORKING POC
by Metin Yunus Kandemir · pythondoswindows
https://www.exploit-db.com/exploits/46937

This PoC exploits a local denial-of-service vulnerability in Free SMTP Server 2.5 by sending increasingly large buffers to the SMTP service on port 25, causing it to crash. The exploit uses a simple socket connection to flood the server with 'A' characters, demonstrating a buffer overflow or resource exhaustion flaw.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: Free SMTP Server 2.5
No auth needed
Prerequisites: Local access to the target machine · Free SMTP Server 2.5 running on port 25
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026