A format string vulnerability has been reported for Null Webmail 0.64. Allegedly, there exists errors in the server code. By supplying maliciously contructed format strings to the vulnerable functions, it may be possible to corrupt memory with attacker-supplied data. This may result in arbitrary code execution with the privileges of the server.
A format string vulnerability has been reported for Null Webmail 0.64. Allegedly, there exists errors in the server code. By supplying maliciously contructed format strings to the vulnerable functions, it may be possible to corrupt memory with attacker-supplied data. This may result in arbitrary code execution with the privileges of the server.