← Back

CVE-2008-7074

nvd nist
Published: Aug 25, 2009Modified: Apr 23, 2026

JSON object

Loading...
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD

Description

Format string vulnerability in MemeCode Software i.Scribe 1.88 through 2.00 before Beta9 allows remote SMTP servers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in a server response, which is not properly handled "when displaying the signon message."

Affected (13)

Products: Memcode: I.scribe
1 product
I.scribe
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Memcode
Version 1.88
Version 1.89
Version 1.90
Version 2.00 alpha1
Version 2.00 alpha2
Version 2.00 alpha3
Version 2.00 alpha4
Version 2.00 beta10
Version 2.00 beta11
Version 2.00 beta6
Version 2.00 beta7
Version 2.00 beta8
Version 2.00 beta9

References (12)

Source: cve@mitre.org
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.