Описание
viewcert.php in the S/MIME plugin 0.4 and 0.5 for Squirrelmail allows remote attackers to execute arbitrary commands via shell metacharacters in the cert parameter.
Ссылки
- Vendor Advisory
- PatchThird Party AdvisoryUS Government Resource
- Vendor Advisory
- PatchThird Party AdvisoryUS Government Resource
Уязвимые конфигурации
Конфигурация 1
Одно из
cpe:2.3:a:squirrelmail:s_mime_plugin:0.4:*:*:*:*:*:*:*
cpe:2.3:a:squirrelmail:s_mime_plugin:0.5:*:*:*:*:*:*:*
EPSS
Процентиль: 82%
0.01788
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
github
почти 4 года назад
viewcert.php in the S/MIME plugin 0.4 and 0.5 for Squirrelmail allows remote attackers to execute arbitrary commands via shell metacharacters in the cert parameter.
EPSS
Процентиль: 82%
0.01788
Низкий
7.5 High
CVSS2
Дефекты
NVD-CWE-Other