Описание
The DBMail driver in the Password plugin in Roundcube before 1.1.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the password.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | not-affected | |
| bionic | not-affected | 1.3.6+dfsg.1-1 |
| cosmic | not-affected | 1.3.6+dfsg.1-1 |
| devel | not-affected | 1.3.6+dfsg.1-1 |
| disco | not-affected | 1.3.6+dfsg.1-1 |
| esm-apps/bionic | not-affected | 1.3.6+dfsg.1-1 |
| esm-apps/xenial | not-affected | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
| precise | ignored | end of life |
| precise/esm | DNE | precise was needed |
Показывать по
10
9 Critical
CVSS2
8.8 High
CVSS3
Связанные уязвимости
CVSS3: 8.8
nvd
около 9 лет назад
The DBMail driver in the Password plugin in Roundcube before 1.1.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the password.
CVSS3: 8.8
debian
около 9 лет назад
The DBMail driver in the Password plugin in Roundcube before 1.1.0 all ...
CVSS3: 8.8
github
больше 3 лет назад
The DBMail driver in the Password plugin in Roundcube before 1.1.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the password.
9 Critical
CVSS2
8.8 High
CVSS3