Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-10033

Опубликовано: 30 дек. 2016
Источник: debian
EPSS Критический

Описание

The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted Sender property.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libphp-phpmailerfixed5.2.14+dfsg-2.1package

Примечания

  • https://legalhackers.com/advisories/PHPMailer-Exploit-Remote-Code-Exec-CVE-2016-10033-Vuln.html

  • Fixed by: https://github.com/PHPMailer/PHPMailer/commit/4835657cd639fbd09afd33307cef164edf807cdc#diff-ace81e501931d8763b49f2410cf3094dR1449

  • Fix potentially incomplete, cf https://www.openwall.com/lists/oss-security/2016/12/28/1

  • When updating libphp-phpmailer for CVE-2016-10033 make sure to apply the

  • complete patch to not make libphp-phpmailer affected by CVE-2016-10045.

  • https://legalhackers.com/advisories/PHPMailer-Exploit-Remote-Code-Exec-CVE-2016-10045-Vuln-Patch-Bypass.html

  • Needs followup: https://github.com/PHPMailer/PHPMailer/commit/9743ff5c7ee16e8d49187bd2e11149afb9485eae

  • Another followup: https://github.com/PHPMailer/PHPMailer/commit/833c35fe39715c3d01934508987e97af1fbc1ba0

EPSS

Процентиль: 100%
0.94462
Критический

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 8 лет назад

The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted Sender property.

CVSS3: 9.8
nvd
больше 8 лет назад

The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted Sender property.

CVSS3: 9.8
github
больше 5 лет назад

Remote code execution in PHPMailer

EPSS

Процентиль: 100%
0.94462
Критический