CVE Vulnerabilities

CVE-2007-3215

Published: Jun 14, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

PHPMailer 1.7, when configured to use sendmail, allows remote attackers to execute arbitrary shell commands via shell metacharacters in the SendmailSend function in class.phpmailer.php.

Affected Software

Name Vendor Start Version End Version
Phpmailer Phpmailer 1.7 (including) 1.7 (including)
Phpmailer Phpmailer 1.7.1 (including) 1.7.1 (including)
Phpmailer Phpmailer 1.7.2 (including) 1.7.2 (including)
Phpmailer Phpmailer 1.7.3 (including) 1.7.3 (including)
Phpmailer Phpmailer 1.73 (including) 1.73 (including)

References