CVE-2003-1200
50Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 65%
from disclosure to weapon0 days
Published on NVDMay 10
1st PoCDec 29
metasploitDec 29
exploitation probability
65%top 1% of all CVEs
observed exploitation
nono source reports it
3 public exploit(s)
Stack-based buffer overflow in FORM2RAW.exe in Alt-N MDaemon 6.5.2 through 6.8.5 allows remote attackers to execute arbitrary code via a long From parameter to Form2Raw.cgi.
Affected products
n/a · n/apublic PoCs found — 3
exploitdbwww.exploit-db.com/exploits/23501unverifiedexploitdbwww.exploit-db.com/exploits/16812unverifiedexploitdbwww.exploit-db.com/exploits/23502unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://hat-squad.com/bugreport/mdaemon-raw.txthttp://marc.info/?l=bugtraq&m=107936753929354&w=2http://secunia.com/advisories/10512https://exchange.xforce.ibmcloud.com/vulnerabilities/14097http://www.osvdb.org/3255http://www.securityfocus.com/archive/1/348454http://www.securityfocus.com/bid/9317