Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-2957

Опубликовано: 04 сент. 2014
Источник: ubuntu
Приоритет: negligible
EPSS Низкий
CVSS2: 6.8

Описание

The dmarc_process function in dmarc.c in Exim before 4.82.1, when EXPERIMENTAL_DMARC is enabled, allows remote attackers to execute arbitrary code via the From header in an email, which is passed to the expand_string function.

РелизСтатусПримечание
devel

not-affected

4.84~RC1-3ubuntu2
esm-infra-legacy/trusty

ignored

lucid

not-affected

code not present
precise

not-affected

code not present
saucy

ignored

end of life
trusty

ignored

trusty/esm

ignored

upstream

released

4.82.1-1

Показывать по

EPSS

Процентиль: 84%
0.02176
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

redhat
больше 11 лет назад

The dmarc_process function in dmarc.c in Exim before 4.82.1, when EXPERIMENTAL_DMARC is enabled, allows remote attackers to execute arbitrary code via the From header in an email, which is passed to the expand_string function.

nvd
больше 11 лет назад

The dmarc_process function in dmarc.c in Exim before 4.82.1, when EXPERIMENTAL_DMARC is enabled, allows remote attackers to execute arbitrary code via the From header in an email, which is passed to the expand_string function.

debian
больше 11 лет назад

The dmarc_process function in dmarc.c in Exim before 4.82.1, when EXPE ...

github
больше 3 лет назад

The dmarc_process function in dmarc.c in Exim before 4.82.1, when EXPERIMENTAL_DMARC is enabled, allows remote attackers to execute arbitrary code via the From header in an email, which is passed to the expand_string function.

EPSS

Процентиль: 84%
0.02176
Низкий

6.8 Medium

CVSS2