Exim 3.22 and earlier, in some configurations, does not properly verify the local part of an address when redirecting the address to a pipe, which could allow remote attackers to execute arbitrary commands via shell metacharacters.
References
Information
Published : 2001-12-18 21:00
Updated : 2017-10-09 18:29
NVD link : CVE-2001-0889
Mitre link : CVE-2001-0889
JSON object : View
CWE
Products Affected
university_of_cambridge
- exim
redhat
- linux