Back

CVE-2005-1478

Format string vulnerability in dSMTP (dsmtp.exe) in DMail 3.1a allows remote attackers to execute arbitrary code via format string specifiers in the xtellmail command.

Published: May 11, 2005 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (2)

Vendor Product Version
netwin dmail 3.1a
netwin dmail 3.1b

GitHub Security Advisory GHSA-rgj3-5pc6-c68m

Format string vulnerability in dSMTP (dsmtp.exe) in DMail 3.1a allows remote attackers to execute...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 4.84%

Top 9% most likely to be exploited

Threat Score 31.5 / 100

Data Sources

NVD EPSS GitHub