Sploitus

CVE-2003-0694

3 known exploits for CVE-2003-0694

The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function in parseaddr.c.

Affected products
Sendmail
Sendmail Advanced Message Server
= 1.2, 1.3
Sendmail
= 2.6, 2.6.1, 2.6.2, 3.0, 3.0.1, 3.0.2, 3.0.3, 8.8.8, 8.9.0, 8.9.1, 8.9.2, 8.9.3, 8.10, 8.10.1, 8.10.2, 8.11.0, 8.11.1, 8.11.2, 8.11.3, 8.11.4, 8.11.5, 8.11.6, 8.12, 8.12.0, 8.12.1, 8.12.2, 8.12.3, 8.12.4, 8.12.5, 8.12.6, 8.12.7, 8.12.8, 8.12.9
Sendmail Sendmail Pro
= 8.9.2, 8.9.3
Sendmail Sendmail Switch
= 2.1, 2.1.1, 2.1.2
Fix
Available
CVSS 2.0
10.0 HIGH
EPSS
66.2% (99th percentile)
NVD status
Modified
Published
2003-09-18
CVE-2003-0694 at NVD
Authoritative description, scoring and affected products

3 known exploits for CVE-2003-0694

Proof-of-concept code and exploit modules indexed by Sploitus