Exim 在 4.100.1 之前的版本存在 SMTP 走私漏洞,其中接收到的消息与发送的消息不匹配,而是依赖于在 DATA 处理过程中被拒绝后发送的精心构造的数据。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-94056 | 7.5 HIGH | Exim 4.100.1前 Proxy-Protocol 栈未初始化读取 |
| CVE-2026-94054 | 7.0 HIGH | Exim 4.100.1前Proxy-Protocol致越界写入 |
| CVE-2026-94055 | 3.7 LOW | Exim 4.100.1前GnuTLS配置下存在UAF漏洞 |
No comments yet