Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-14357

Опубликовано: 17 июл. 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5
CVSS3: 9.8

Описание

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with an automatic subscription.

РелизСтатусПримечание
artful

ignored

end of life
bionic

released

1.9.4-3ubuntu0.1
cosmic

released

1.10.1-1
devel

released

1.10.1-1
disco

released

1.10.1-1
eoan

released

1.10.1-1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1.5.21-6.4ubuntu2.2]]
esm-infra/bionic

released

1.9.4-3ubuntu0.1
esm-infra/focal

released

1.10.1-1
esm-infra/xenial

released

1.5.24-1ubuntu0.2

Показывать по

РелизСтатусПримечание
artful

DNE

bionic

ignored

end of standard support, was needed
cosmic

ignored

end of life
devel

not-affected

20180716+dfsg.1-1.2
disco

not-affected

20180716+dfsg.1-1
eoan

not-affected

20180716+dfsg.1-1.2
esm-apps/bionic

released

20171215+dfsg.1-1ubuntu0.1~esm1
esm-apps/focal

not-affected

20180716+dfsg.1-1.2
esm-apps/jammy

not-affected

20180716+dfsg.1-1.2
esm-apps/noble

not-affected

20180716+dfsg.1-1.2

Показывать по

EPSS

Процентиль: 86%
0.02975
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 7.1
redhat
больше 7 лет назад

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with an automatic subscription.

CVSS3: 9.8
nvd
больше 7 лет назад

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with an automatic subscription.

CVSS3: 9.8
debian
больше 7 лет назад

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018- ...

CVSS3: 9.8
github
больше 3 лет назад

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with an automatic subscription.

CVSS3: 9.8
fstec
больше 7 лет назад

Уязвимость почтовых клиентов Mutt и NeoMutt, связанная с непринятием мер по чистке данных на управляющем уровне, позволяющая нарушителю выполнить произвольные команды

EPSS

Процентиль: 86%
0.02975
Низкий

7.5 High

CVSS2

9.8 Critical

CVSS3