📦

mutt

Vendor: mutt

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 11 Remote Access
Total CVEs 53 Total Indexed
Avg. EPSS 1.75% Exploit Prob.
Latest CVE CVE-2024-49395 Nov 12

Security Vulnerability Index

Page 2 / 6
4.8 CVSS

Mutt before 1.14.3 proceeds with a connection even if, in response to a GnuTLS certificate prompt, the user rejects an expired intermediate certificate.

EPSS: 0.69%
5.9 CVSS

Mutt before 1.14.3 allows an IMAP fcc/postpone man-in-the-middle attack via a PREAUTH response.

EPSS: 3.86%
5.5 CVSS

Mutt before 1.5.20 patch 7 allows an attacker to cause a denial of service via a series of requests to mutt temporary files.

EPSS: 0.13%
9.8 CVSS

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. pop.c does not forbid characters that may have unsafe interaction with message-cache pathnames, as demonstrated by a '/' character.

EPSS: 1.81%
9.8 CVSS

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They have a buffer overflow via base64 data.

EPSS: 4.10%
9.8 CVSS

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/message.c has a stack-based buffer overflow for a FETCH response with a long RFC822.SIZE field.

EPSS: 1.38%
9.8 CVSS

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with an automatic subscription.

EPSS: 2.53%
9.8 CVSS

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. pop.c mishandles a zero-length UID.

EPSS: 0.94%
5.3 CVSS

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/util.c mishandles ".." directory traversal in a mailbox name.

EPSS: 0.81%
9.8 CVSS

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with a manual subscription or unsubscription.

EPSS: 2.53%