Spamdyke is a mail-filtering and anti-spam gateway product that operates in the SMTP receive path, with observed vulnerabilities concentrating in injection issues and memory-boundary handling inherent to parsing and filtering untrusted email content. The durable signal reflects the software's role as a network-facing input processor where improper neutralization of special elements and buffer-boundary violations represent characteristic weaknesses of message-parsing components.
The number and severity of CVEs published that impact products developed by Spamdyke over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-0070HIGH spamdyke prior to 4.2.1: STARTTLS reveals plaintext | Jan 15, 2020 | 7.5 | 25 | NO | NO |
CVE-2012-0802HIGH Multiple buffer overflows in Spamdyke before 4.3.0 might allow remote attackers to execute arbitrary code via vectors related to "serious errors in the usage of snprintf()/vsnprint | Jun 19, 2012 | 7.5 | 25 | NO | NO |
CVE-2008-2784MEDIUM The smtp_filter function in spamdyke before 3.1.8 does not filter RCPT commands after encountering the first DATA command, which allows remote attackers to use the server as an ope | Jun 19, 2008 | 6.4 | 17 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Spamdyke.
Media articles that mention a CVE ID that affects a product developed by Spamdyke — matched by CVE ID, not by vendor name.