Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2007-2770

4 documents4 sources
Severity
9.3CRITICAL
EPSS
3.8%
top 11.95%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedMay 21
Latest updateMay 1

Description

Stack-based buffer overflow in Eudora 7.1 allows user-assisted, remote SMTP servers to execute arbitrary code via a long SMTP reply. NOTE: the user must click through a warning about a possible buffer overflow exploit to trigger this issue.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-64m4-j593-v86j: Stack-based buffer overflow in Eudora 72022-05-01
CVEList
CVE-2007-2770: Stack-based buffer overflow in Eudora 72007-05-21

💥Exploits & PoCs

1
Exploit-DB
Eudora 7.1 - SMTP ResponseRemote Remote Buffer Overflow2007-05-15
CVE-2007-2770 (CRITICAL CVSS 9.3) | Stack-based buffer overflow in Eudo | cvebase.io