AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2001-1078

HIGH · CVSS 10 EPSS 5.44%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2001-06-21 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2001-1078
Severity
HIGH
CVSS
10
EPSS
5.44%

Original NVD Description

Format string vulnerability in flog function of eXtremail 1.1.9 and earlier allows remote attackers to gain root privileges via format specifiers in the SMTP commands (1) HELO, (2) EHLO, (3) MAIL FROM, or (4) RCPT TO, and the POP3 commands (5) USER and (6) other commands that can be executed after POP3 authentication.