Loading vulnerability details…
CVSS v3.1
N/A
EPSS
14.57%
Published
Sep 13, 2005
Modified
Jun 16, 2026
Public PoC / Exploit (3)
All weaponized →Links to public security research (Exploit-DB, Nuclei, Trickest, GitHub) for defensive use only.
Description
Format string vulnerability in search.c in the imap4d server in GNU Mailutils 0.6 allows remote authenticated users to execute arbitrary code via format string specifiers in the SEARCH command.
Affected Products (1)
References (18)