MEDIUM
vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows remote attackers to cause a denial of service via a USER or PASS command that contains arbitrary formatting directives
Published Oct 13, 2000
5.0
MEDIUMCVSS 2.0
EPSS 1.66%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.