RSS   Vulnerabilities for 'MAIL'   RSS

2009-11-29
 
CVE-2009-4111

CWE-94
 

 
Argument injection vulnerability in Mail/sendmail.php in the Mail package 1.1.14, 1.2.0b2, and possibly other versions for PEAR allows remote attackers to read and write arbitrary files via a crafted $recipients parameter, and possibly other parameters, a different vulnerability than CVE-2009-4023.

 

 >>> Vendor: PEAR 10 Products
Xml rpc
MAIL
PEAR
Text password
Pear liveuser
Pear archive tar
Pear archive zip
Structures datagrid datasource mdb2
Html ajax
Crypt gpg


Copyright 2024, cxsecurity.com

 

Back to Top