V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2023-42115
ANC
CriticalConfirmedExploit available

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on …

CVSS
9.8
Critical
EPSS
0.10
p95
Published
2023-01-01
Updated
2023-01-01
Description

Exim AUTH Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Exim. Authentication is not required to exploit this vulnerability. The specific flaw exists within the smtp service, which listens on TCP port 25 by default. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of a buffer. An attacker can leverage this vulnerability to execute code in the context of the service account. . Was ZDI-CAN-17434.

Tags · CWE
RCEPre-auth
CWE-787
Affected products
Exim < 4.96.1
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Timeline
2023-01-01
Published
2023-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.100 · p95
Known exploited (KEV)
No
Known exploits — Сканер-ВС
CVE-2023-42115
github-poc · https://github.com/doaso/CVE-2023-42115
Enterprise
Affected products
ProductVendorStatus
Tracked
exim4Tracked
exim4Tracked
exim4Tracked
exim4Tracked
exim4Tracked
exim4Tracked
exim4Tracked
exim4Tracked
exim4Tracked
exim4Tracked
exim*Tracked
Source databases
ANC
AST
DEB
CVE
UBU
Related vulnerabilities