ZeroHour

CVE-2020-7845

CVSS 3.1
9.8 critical
EPSS
3%p85
Published
()
Modified
Description

Spamsniper 5.0 ~ 5.2.7 contain a stack-based buffer overflow vulnerability caused by improper boundary checks when parsing MAIL FROM command. It leads remote attacker to execute arbitrary code via crafted packet.

Vendors
jiransecurity
Products
spamsniper
Weakness
CWE-121, CWE-787
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.