{"schema_version":1,"title":"Eric Allman Sendmail vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 13 vulnerabilities in Eric Allman Sendmail: 0 in the last 7 days and 0 in the last 90 days, 6 of them critical and 0 exploited in the wild. The most recent, CVE-1999-0098, was published on 1 April 1998.","url":"https://junglewise.ai/threats/technologies/sendmail","json_url":"https://junglewise.ai/threats/technologies/sendmail.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/sendmail","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":5,"all_time":13,"critical":6,"exploited":0,"last_7_days":0,"last_30_days":0,"last_90_days":0,"last_365_days":0},"latest":[{"cve":"CVE-1999-0098","cvss":10,"slug":"cve-1999-0098-sendmail-buffer-overflow-in-smtp-helo-command","title":"Sendmail buffer overflow in SMTP HELO command","severity":"critical","exploited":false,"published_at":"1998-04-01T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0098-sendmail-buffer-overflow-in-smtp-helo-command"},{"cve":"CVE-1999-0047","cvss":10,"slug":"cve-1999-0047-sendmail-mime-conversion-buffer-overflow","title":"Sendmail MIME conversion buffer overflow","severity":"critical","exploited":false,"published_at":"1997-01-28T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0047-sendmail-mime-conversion-buffer-overflow"},{"cve":"CVE-1999-0204","cvss":10,"slug":"cve-1999-0204-sendmail-remote-command-execution-via-ident","title":"Sendmail remote command execution via ident","severity":"critical","exploited":false,"published_at":"1997-01-01T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0204-sendmail-remote-command-execution-via-ident"},{"cve":"CVE-1999-0163","cvss":7.2,"slug":"cve-1999-0163-sendmail-command-injection-via-pipe-character","title":"Sendmail command injection via pipe character","severity":"high","exploited":false,"published_at":"1997-01-01T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0163-sendmail-command-injection-via-pipe-character"},{"cve":"CVE-1999-0096","cvss":5,"slug":"cve-1999-0096-sendmail-arbitrary-file-overwrite-via-decode-alias","title":"Sendmail arbitrary file overwrite via decode alias","severity":"medium","exploited":false,"published_at":"1996-12-10T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0096-sendmail-arbitrary-file-overwrite-via-decode-alias"},{"cve":"CVE-1999-0129","cvss":4.6,"slug":"cve-1999-0129-sendmail-local-privilege-escalation-via-forward-or-include-files","title":"Sendmail local privilege escalation via .forward or :include: files","severity":"medium","exploited":false,"published_at":"1996-12-03T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0129-sendmail-local-privilege-escalation-via-forward-or-include-files"},{"cve":"CVE-1999-0130","cvss":7.2,"slug":"cve-1999-0130-sendmail-local-privilege-escalation-via-daemon-mode","title":"Sendmail local privilege escalation via daemon mode","severity":"high","exploited":false,"published_at":"1996-11-16T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0130-sendmail-local-privilege-escalation-via-daemon-mode"},{"cve":"CVE-1999-0206","cvss":10,"slug":"cve-1999-0206-sendmail-mime-buffer-overflow-in-sendmail-8-8-0-and-8-8-1","title":"Sendmail MIME buffer overflow in Sendmail 8.8.0 and 8.8.1","severity":"critical","exploited":false,"published_at":"1996-10-01T04:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0206-sendmail-mime-buffer-overflow-in-sendmail-8-8-0-and-8-8-1"},{"cve":"CVE-1999-0131","cvss":7.2,"slug":"cve-1999-0131-sendmail-buffer-overflow-in-gecos-field","title":"Sendmail buffer overflow in GECOS field","severity":"high","exploited":false,"published_at":"1996-09-11T04:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0131-sendmail-buffer-overflow-in-gecos-field"},{"cve":"CVE-1999-1309","cvss":7.2,"slug":"cve-1999-1309-sendmail-privilege-escalation-via-large-debug-value","title":"Sendmail privilege escalation via large debug value","severity":"high","exploited":false,"published_at":"1996-08-30T04:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-1309-sendmail-privilege-escalation-via-large-debug-value"},{"cve":"CVE-1999-0203","cvss":10,"slug":"cve-1999-0203-sendmail-arbitrary-command-execution-via-smtp-bounce-manipulation","title":"Sendmail arbitrary command execution via SMTP bounce manipulation","severity":"critical","exploited":false,"published_at":"1995-08-17T04:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0203-sendmail-arbitrary-command-execution-via-smtp-bounce-manipulation"},{"cve":"CVE-1999-0145","cvss":7.2,"slug":"cve-1999-0145-sendmail-wiz-command-enabled-allowing-root-access","title":"Sendmail WIZ command enabled allowing root access","severity":"high","exploited":false,"published_at":"1993-09-30T04:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0145-sendmail-wiz-command-enabled-allowing-root-access"},{"cve":"CVE-1999-0095","cvss":10,"slug":"cve-1999-0095-sendmail-debug-command-enabled-remote-command-execution","title":"Sendmail debug command enabled remote command execution","severity":"critical","exploited":false,"published_at":"1988-10-01T04:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0095-sendmail-debug-command-enabled-remote-command-execution"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[],"technology":{"hub":true,"name":"Eric Allman Sendmail","slug":"sendmail","vendor":{"name":"Eric Allman","slug":"eric-allman","url":"https://junglewise.ai/threats/vendors/eric-allman"},"aliases":[],"category":"MTA","homepage":"https://www.proofpoint.com/us/products/email-protection/open-source-sendmail","repo_url":"https://github.com/sendmail/sendmail","description":"A general-purpose internetwork mail routing facility that supports various mail transfer and delivery methods.","url":"https://junglewise.ai/threats/technologies/sendmail"},"most_severe":[{"cve":"CVE-1999-0098","cvss":10,"slug":"cve-1999-0098-sendmail-buffer-overflow-in-smtp-helo-command","title":"Sendmail buffer overflow in SMTP HELO command","severity":"critical","exploited":false,"published_at":"1998-04-01T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0098-sendmail-buffer-overflow-in-smtp-helo-command"},{"cve":"CVE-1999-0047","cvss":10,"slug":"cve-1999-0047-sendmail-mime-conversion-buffer-overflow","title":"Sendmail MIME conversion buffer overflow","severity":"critical","exploited":false,"published_at":"1997-01-28T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0047-sendmail-mime-conversion-buffer-overflow"},{"cve":"CVE-1999-0204","cvss":10,"slug":"cve-1999-0204-sendmail-remote-command-execution-via-ident","title":"Sendmail remote command execution via ident","severity":"critical","exploited":false,"published_at":"1997-01-01T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0204-sendmail-remote-command-execution-via-ident"},{"cve":"CVE-1999-0206","cvss":10,"slug":"cve-1999-0206-sendmail-mime-buffer-overflow-in-sendmail-8-8-0-and-8-8-1","title":"Sendmail MIME buffer overflow in Sendmail 8.8.0 and 8.8.1","severity":"critical","exploited":false,"published_at":"1996-10-01T04:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0206-sendmail-mime-buffer-overflow-in-sendmail-8-8-0-and-8-8-1"},{"cve":"CVE-1999-0203","cvss":10,"slug":"cve-1999-0203-sendmail-arbitrary-command-execution-via-smtp-bounce-manipulation","title":"Sendmail arbitrary command execution via SMTP bounce manipulation","severity":"critical","exploited":false,"published_at":"1995-08-17T04:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0203-sendmail-arbitrary-command-execution-via-smtp-bounce-manipulation"},{"cve":"CVE-1999-0095","cvss":10,"slug":"cve-1999-0095-sendmail-debug-command-enabled-remote-command-execution","title":"Sendmail debug command enabled remote command execution","severity":"critical","exploited":false,"published_at":"1988-10-01T04:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0095-sendmail-debug-command-enabled-remote-command-execution"},{"cve":"CVE-1999-0163","cvss":7.2,"slug":"cve-1999-0163-sendmail-command-injection-via-pipe-character","title":"Sendmail command injection via pipe character","severity":"high","exploited":false,"published_at":"1997-01-01T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0163-sendmail-command-injection-via-pipe-character"},{"cve":"CVE-1999-0130","cvss":7.2,"slug":"cve-1999-0130-sendmail-local-privilege-escalation-via-daemon-mode","title":"Sendmail local privilege escalation via daemon mode","severity":"high","exploited":false,"published_at":"1996-11-16T05:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0130-sendmail-local-privilege-escalation-via-daemon-mode"},{"cve":"CVE-1999-0131","cvss":7.2,"slug":"cve-1999-0131-sendmail-buffer-overflow-in-gecos-field","title":"Sendmail buffer overflow in GECOS field","severity":"high","exploited":false,"published_at":"1996-09-11T04:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-0131-sendmail-buffer-overflow-in-gecos-field"},{"cve":"CVE-1999-1309","cvss":7.2,"slug":"cve-1999-1309-sendmail-privilege-escalation-via-large-debug-value","title":"Sendmail privilege escalation via large debug value","severity":"high","exploited":false,"published_at":"1996-08-30T04:00:00+00:00","url":"https://junglewise.ai/threats/cve-1999-1309-sendmail-privilege-escalation-via-large-debug-value"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}