Back to Database
Status published
Critical
CVE-1999-0203
In Sendmail, attackers can gain root privileges via SMTP by...
Vulnerability Description
In Sendmail, attackers can gain root privileges via SMTP by specifying an improper "mail from" address and an invalid "rcpt to" address that would cause the mail to bounce to a program.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-1999-0203
Credits & Attribution
No credits recorded in the NVD database.
More from eric allman
View All →CVE-2000-0319
mail.local in Sendmail 8.10.x does not properly identify the .\n...
Medium
5
CVE-1999-0976
Sendmail allows local users to reinitialize the aliases database via...
Low
2.1
CVE-1999-0393
Remote attackers can cause a denial of service in Sendmail...
Medium
5
CVE-1999-0206
MIME buffer overflow in Sendmail 8.8.0 and 8.8.1 gives root...
Critical
10
CVE-1999-0205
Denial of service in Sendmail 8.6.11 and 8.6.12....
Medium
5
Affected Vendor
eric allman
View all reports →Affected Software
sendmail
Vulnerable Versions:
8.6.10
Timeline
Official Publish:
April 25th, 2000
Last Modified:
August 1st, 2024
Added to House:
July 17th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.