Back

CVE-2005-0687

Format string vulnerability in Hashcash 1.16 allows remote attackers to cause a denial of service (memory consumption) and possibly execute arbitrary code via format string specifiers in a reply address, which is not properly handled when printing the header.

Published: Mar 6, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (3)

Vendor Product Version
hashcash hashcash 1.14
hashcash hashcash 1.15
hashcash hashcash 1.16

GitHub Security Advisory GHSA-5w7r-v534-x375

Format string vulnerability in Hashcash 1.16 allows remote attackers to cause a denial of service...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.88%

Top 14% most likely to be exploited

Threat Score 30.9 / 100

Data Sources

NVD EPSS GitHub