PoC Index

CVE-2015-2181

HIGH 8.8EPSS 2.9%

Multiple buffer overflows in the DBMail driver in the Password plugin in Roundcube before 1.1.0 allow remote attackers to have unspecified impact via the (1) password or (2) username.

CVSS v3.0
8.8 HIGHCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v2.0
6.5 MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
EPSS
2.87% chance of exploitation in the next 30 days, 86th percentile
Published
2017-01-30
Updated
2024-08-06

Proof-of-concept exploits (1)

References

Related