Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-4111

Опубликовано: 29 нояб. 2009
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8

Описание

Argument injection vulnerability in Mail/sendmail.php in the Mail package 1.1.14, 1.2.0b2, and possibly other versions for PEAR allows remote attackers to read and write arbitrary files via a crafted $recipients parameter, and possibly other parameters, a different vulnerability than CVE-2009-4023.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

1.2.0-6
cosmic

not-affected

1.2.0-6
dapper

ignored

end of life
devel

not-affected

1.2.0-6
esm-apps/bionic

not-affected

1.2.0-6
esm-apps/xenial

not-affected

1.2.0-6
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [1.2.0-6]]
hardy

ignored

end of life
intrepid

ignored

end of life, was needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 72%
0.00707
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

redhat
больше 16 лет назад

Argument injection vulnerability in Mail/sendmail.php in the Mail package 1.1.14, 1.2.0b2, and possibly other versions for PEAR allows remote attackers to read and write arbitrary files via a crafted $recipients parameter, and possibly other parameters, a different vulnerability than CVE-2009-4023.

nvd
около 16 лет назад

Argument injection vulnerability in Mail/sendmail.php in the Mail package 1.1.14, 1.2.0b2, and possibly other versions for PEAR allows remote attackers to read and write arbitrary files via a crafted $recipients parameter, and possibly other parameters, a different vulnerability than CVE-2009-4023.

debian
около 16 лет назад

Argument injection vulnerability in Mail/sendmail.php in the Mail pack ...

github
больше 3 лет назад

Argument injection vulnerability in Mail/sendmail.php in the Mail package 1.1.14, 1.2.0b2, and possibly other versions for PEAR allows remote attackers to read and write arbitrary files via a crafted $recipients parameter, and possibly other parameters, a different vulnerability than CVE-2009-4023.

EPSS

Процентиль: 72%
0.00707
Низкий

6.8 Medium

CVSS2