CVE Vulnerabilities

CVE-2007-3215

Published: Jun 14, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

PHPMailer 1.7, when configured to use sendmail, allows remote attackers to execute arbitrary shell commands via shell metacharacters in the SendmailSend function in class.phpmailer.php.

Affected Software

Name Vendor Start Version End Version
Phpmailer Phpmailer 1.7 (including) 1.7 (including)
Phpmailer Phpmailer 1.7.1 (including) 1.7.1 (including)
Phpmailer Phpmailer 1.7.2 (including) 1.7.2 (including)
Phpmailer Phpmailer 1.7.3 (including) 1.7.3 (including)
Phpmailer Phpmailer 1.73 (including) 1.73 (including)
Flyspray Ubuntu dapper *
Flyspray Ubuntu edgy *
Flyspray Ubuntu feisty *
Flyspray Ubuntu gutsy *
Glpi Ubuntu devel *
Glpi Ubuntu feisty *
Glpi Ubuntu gutsy *
Glpi Ubuntu hardy *
Glpi Ubuntu intrepid *
Glpi Ubuntu jaunty *
Glpi Ubuntu karmic *
Ipplan Ubuntu devel *
Ipplan Ubuntu gutsy *
Ipplan Ubuntu hardy *
Ipplan Ubuntu intrepid *
Ipplan Ubuntu jaunty *
Ipplan Ubuntu karmic *
Knowledgeroot Ubuntu devel *
Knowledgeroot Ubuntu feisty *
Knowledgeroot Ubuntu gutsy *
Knowledgeroot Ubuntu hardy *
Knowledgeroot Ubuntu intrepid *
Knowledgeroot Ubuntu jaunty *
Knowledgeroot Ubuntu karmic *
Libphp-phpmailer Ubuntu dapper *
Libphp-phpmailer Ubuntu devel *
Libphp-phpmailer Ubuntu edgy *
Libphp-phpmailer Ubuntu feisty *
Libphp-phpmailer Ubuntu gutsy *
Libphp-phpmailer Ubuntu hardy *
Libphp-phpmailer Ubuntu intrepid *
Libphp-phpmailer Ubuntu jaunty *
Libphp-phpmailer Ubuntu karmic *
Moodle Ubuntu dapper *
Moodle Ubuntu hardy *
Moodle Ubuntu intrepid *
Moodle Ubuntu upstream *
Owl-dms Ubuntu dapper *
Owl-dms Ubuntu edgy *
Owl-dms Ubuntu feisty *
Owl-dms Ubuntu gutsy *
Owl-dms Ubuntu hardy *
Wordpress Ubuntu feisty *
Wordpress Ubuntu upstream *

References