CVE Vulnerabilities

CVE-2007-3215

Published: Jun 14, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

PHPMailer 1.7, when configured to use sendmail, allows remote attackers to execute arbitrary shell commands via shell metacharacters in the SendmailSend function in class.phpmailer.php.

Affected Software

NameVendorStart VersionEnd Version
PhpmailerPhpmailer1.7 (including)1.7 (including)
PhpmailerPhpmailer1.7.1 (including)1.7.1 (including)
PhpmailerPhpmailer1.7.2 (including)1.7.2 (including)
PhpmailerPhpmailer1.7.3 (including)1.7.3 (including)
PhpmailerPhpmailer1.73 (including)1.73 (including)
FlysprayUbuntudapper*
FlysprayUbuntuedgy*
FlysprayUbuntufeisty*
FlysprayUbuntugutsy*
GlpiUbuntudevel*
GlpiUbuntufeisty*
GlpiUbuntugutsy*
GlpiUbuntuhardy*
GlpiUbuntuintrepid*
GlpiUbuntujaunty*
GlpiUbuntukarmic*
IpplanUbuntudevel*
IpplanUbuntugutsy*
IpplanUbuntuhardy*
IpplanUbuntuintrepid*
IpplanUbuntujaunty*
IpplanUbuntukarmic*
KnowledgerootUbuntudevel*
KnowledgerootUbuntufeisty*
KnowledgerootUbuntugutsy*
KnowledgerootUbuntuhardy*
KnowledgerootUbuntuintrepid*
KnowledgerootUbuntujaunty*
KnowledgerootUbuntukarmic*
Libphp-phpmailerUbuntudapper*
Libphp-phpmailerUbuntudevel*
Libphp-phpmailerUbuntuedgy*
Libphp-phpmailerUbuntufeisty*
Libphp-phpmailerUbuntugutsy*
Libphp-phpmailerUbuntuhardy*
Libphp-phpmailerUbuntuintrepid*
Libphp-phpmailerUbuntujaunty*
Libphp-phpmailerUbuntukarmic*
MoodleUbuntudapper*
MoodleUbuntuhardy*
MoodleUbuntuintrepid*
MoodleUbuntuupstream*
Owl-dmsUbuntudapper*
Owl-dmsUbuntuedgy*
Owl-dmsUbuntufeisty*
Owl-dmsUbuntugutsy*
Owl-dmsUbuntuhardy*
WordpressUbuntufeisty*
WordpressUbuntuupstream*

References