361,800
Total CVEs
26,223
Critical
85,816
High
1,626
CISA KEV
802
This Week
5 results · Page 1/1
masqmail 0.2.21 through 0.2.30 improperly calls seteuid() in src/log.c and src/masqmail.c that results in improper privilege dropping.
marmaro
masqmail before 0.2.18 allows remote attackers to execute arbitrary commands via crafted e-mail addresses that are not properly sanitized when creating a failed delivery message.
masqmail
masqmail before 0.2.18 allows local users to overwrite arbitrary files via a symlink attack on a log file.
masqmail
Multiple buffer overflows in conf.c for Masqmail 0.1.x before 0.1.17, and 0.2.x before 0.2.15, allow local users to gain privileges via certain entries in the configuration file (-C option).
masqmail