PT-2008-2066 · Axigen · Axigen Mail Server

Hempel

+1

·

Published

2008-01-23

·

Updated

2018-10-15

·

CVE-2008-0434

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions AXIGEN Mail Server version 5.0.2
Description The issue is related to a format string vulnerability in the AXIMilter module. This vulnerability allows remote attackers to execute arbitrary code via format string specifiers in the CNHO command.
Recommendations For AXIGEN Mail Server version 5.0.2, consider disabling the AXIMilter module until a patch is available to prevent potential exploitation.

Exploit

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-0434

Affected Products

Axigen Mail Server