Leif M. Wrights Blog 3.5 allows remote authenticated users with administrative privileges to execute arbitrary programs, including shell commands, by configuring the sendmail path to a malicious pathname.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Web_blog | Leif_m._wright | 3.5 (including) | 3.5 (including) |