CVE-2003-0264
HIGH 7.5EPSS 71.5%
Multiple buffer overflows in SLMail 5.1.0.4420 allows remote attackers to execute arbitrary code via (1) a long EHLO argument to slmail.exe, (2) a long XTRN argument to slmail.exe, (3) a long string to POPPASSWD, or (4) a long password to the POP3 server.
- CVSS v2.0
- 7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P - EPSS
- 71.48% chance of exploitation in the next 30 days, 99th percentile
- Published
- 2003-05-08
- Updated
- 2024-08-08
Proof-of-concept exploits (8)
- SxNade/CVE-2003-0264_EXPLOIT0★ · 2021-04-10
- adenkiewicz/CVE-2003-02640★ · 2018-01-01
- fyoderxx/slmail-exploit0★ · 2018-10-01
- nobodyatall648/CVE-2003-02640★ · 2021-06-25
- pwncone/CVE-2003-0264-SLmail-5.50★ · 2020-03-13
- vrikodar/CVE-2003-0264_EXPLOIT0★ · 2021-04-10
- war4uthor/CVE-2003-02640★ · 2018-12-19
- TheMalwareGuardian/CVE-2003-0264
Metasploit modules (1)
ExploitDB entries (4)
- https://www.exploit-db.com/exploits/16399
- https://www.exploit-db.com/exploits/646
- https://www.exploit-db.com/exploits/643
- https://www.exploit-db.com/exploits/638