Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x58g-52cf-5mj7

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Argument injection vulnerability in the sendmail implementation of the Mail::Send method (Mail/sendmail.php) in the Mail package 1.1.14 for PEAR allows remote attackers to read and write arbitrary files via a crafted $from parameter, a different vector than CVE-2009-4111.

Argument injection vulnerability in the sendmail implementation of the Mail::Send method (Mail/sendmail.php) in the Mail package 1.1.14 for PEAR allows remote attackers to read and write arbitrary files via a crafted $from parameter, a different vector than CVE-2009-4111.

EPSS

Процентиль: 86%
0.03135
Низкий

Дефекты

CWE-94

Связанные уязвимости

ubuntu
около 16 лет назад

Argument injection vulnerability in the sendmail implementation of the Mail::Send method (Mail/sendmail.php) in the Mail package 1.1.14 for PEAR allows remote attackers to read and write arbitrary files via a crafted $from parameter, a different vector than CVE-2009-4111.

redhat
больше 16 лет назад

Argument injection vulnerability in the sendmail implementation of the Mail::Send method (Mail/sendmail.php) in the Mail package 1.1.14 for PEAR allows remote attackers to read and write arbitrary files via a crafted $from parameter, a different vector than CVE-2009-4111.

nvd
около 16 лет назад

Argument injection vulnerability in the sendmail implementation of the Mail::Send method (Mail/sendmail.php) in the Mail package 1.1.14 for PEAR allows remote attackers to read and write arbitrary files via a crafted $from parameter, a different vector than CVE-2009-4111.

debian
около 16 лет назад

Argument injection vulnerability in the sendmail implementation of the ...

EPSS

Процентиль: 86%
0.03135
Низкий

Дефекты

CWE-94