VendorsCitadeluxall versions
Vulnerabilities

Citadel Citadel_UX

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2004-1192
Format string vulnerability in the lprintf function in Citadel/UX 6.27 and earlier allows remote attackers to execute arbitrary code via format string specifiers sent to the server.
Published 2004-12-15 · Modified
10.01 PoCEPSS 0.117
CVE-2002-0432
Buffer overflow in (1) lprintf and (2) cprintf in sysdep.c of Citadel/UX 5.90 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via attacks such as a long HELO command to the SMTP server.
Published 2002-06-11 · Modified
10.0EPSS 0.056
CVE-2004-1705
Buffer overflow in Citadel/UX 6.23 and earlier allows remote attackers to cause a denial of service via a long username.
Published 2005-02-26 · Modified
5.03 PoCEPSS 0.049
CVE-2004-1933
Citadel/UX 5.00 through 6.14 installs the database directory and files with world-read permissions, which could allow local users to bypass access controls and read unauthorized messages.
Published 2005-05-10 · Modified
2.1EPSS 0.004