Critical severity9.8NVD Advisory· Published Mar 24, 2026· Updated Jun 17, 2026
CVE-2019-25646
CVE-2019-25646
Description
Tabs Mail Carrier 2.5.1 contains a buffer overflow vulnerability in the MAIL FROM SMTP command that allows remote attackers to execute arbitrary code by sending a crafted MAIL FROM parameter. Attackers can connect to the SMTP service on port 25 and send a malicious MAIL FROM command with an oversized buffer to overwrite the EIP register and execute a bind shell payload.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: 2.5.1
- cpe:2.3:a:tabslab:mailcarrier:2.5.1:*:*:*:*:*:*:*
- Range: =2.5.1
Patches
Vulnerability mechanics
References
2- www.exploit-db.com/exploits/46547nvdExploitThird Party AdvisoryVDB Entry
- www.vulncheck.com/advisories/tabs-mail-carrier-buffer-overflow-via-mail-fromnvdThird Party Advisory
News mentions
0No linked articles in our index yet.