CVE-2005-1478: High severity Netwin DMail vulnerability
Published May 11, 2005
·Updated
Format string vulnerability in dSMTP (dsmtp.exe) in DMail 3.1a allows remote attackers to execute arbitrary code via format string specifiers in the xtellmail command.
Affected Software
2 affected components
Netwin DMail=3.1a
Netwin DMail=3.1b
Event History
May 11, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1478?
CVE-2005-1478 has a high severity rating due to the potential for remote code execution.
2
How do I fix CVE-2005-1478?
To fix CVE-2005-1478, upgrade to a patched version of DMail that does not contain the format string vulnerability.
3
Which versions of DMail are affected by CVE-2005-1478?
CVE-2005-1478 affects DMail versions 3.1a and 3.1b.
4
Can CVE-2005-1478 be exploited remotely?
Yes, CVE-2005-1478 can be exploited remotely through the xtellmail command.
5
What is the impact of CVE-2005-1478?
The impact of CVE-2005-1478 can allow attackers to execute arbitrary code on the server.