Total vulnerabilities in the database
bsmtpd 2.3 and earlier does not properly sanitize e-mail addresses, which allows remote attackers to execute arbitrary commands.
CVSS v2:
No CWE or OWASP classifications available.