Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
sendmail vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2020-7769
This affects the package nodemailer prior to 6.4.16. Use of crafted recipient email addresses may result in arbitrary command flag injection in sendmail transport for sending mails.
Nodemailer Nodemailer
6.2
CVSSv2
CVE-1999-1468
rdist in various UNIX systems uses popen to execute sendmail, which allows local users to gain root privileges by modifying the IFS (Internal Field Separator) variable.
Next Next 2.0
Sgi Irix 3.3.3
Next Next 2.1
Sgi Irix 3.3
Sgi Irix 3.3.1
Sgi Irix 3.3.2
Sgi Irix 4.0
Cray Unicos 6.0e
Sun Sunos 4.1.1
Cray Unicos 6.1
Sun Sunos 4.0.3
Sun Sunos 4.0.3c
Sun Sunos 4.1
Cray Unicos 6.0
Sun Sunos 4.1psr A
9
CVSSv2
CVE-2021-3584
A server side remote code execution vulnerability was found in Foreman project. A authenticated attacker could use Sendmail configuration options to overwrite the defaults and perform command injection. The highest threat from this vulnerability is to confidentiality, integrity a...
Theforeman Foreman
Theforeman Foreman 3.0.0
Redhat Satellite 6.0
7.5
CVSSv2
CVE-2016-10131
system/libraries/Email.php in CodeIgniter prior to 3.1.3 allows remote malicious users to execute arbitrary code by leveraging control over the email->from field to insert sendmail command-line arguments.
Codeigniter Codeigniter
5
CVSSv2
CVE-2007-4538
email_in.pl in Bugzilla 2.23.4 up to and including 3.0.0 allows remote malicious users to execute arbitrary commands via the -f (From address) option to the Email::Send::Sendmail function, probably involving shell metacharacters.
Mozilla Bugzilla 2.6
Mozilla Bugzilla 2.8
Mozilla Bugzilla 2.23.4
Mozilla Bugzilla 2.4
Mozilla Bugzilla 2.9
Mozilla Bugzilla 3.0.0
10
CVSSv2
CVE-2001-0789
Format string vulnerability in avpkeeper in Kaspersky KAV 3.5.135.2 for Sendmail allows remote malicious users to cause a denial of service or possibly execute arbitrary code via a malformed mail message.
Kaspersky Kaspersky Anti-virus 3.5.132.2
7.2
CVSSv2
CVE-2003-1076
Unknown vulnerability in sendmail for Solaris 7, 8, and 9 allows local users to cause a denial of service (unknown impact) and possibly gain privileges via certain constructs in a .forward file.
Sun Solaris 7.0
Sun Sunos 5.8
Sun Solaris 8.0
Sun Solaris 9.0
Sun Sunos 5.7
4.6
CVSSv2
CVE-2001-0588
sendmail 8.9.3, as included with the MMDF 2.43.3b package in SCO OpenServer 5.0.6, can allow a local malicious user to gain additional privileges via a buffer overflow in the first argument to the command.
Sco Openserver 5.0.6
10
CVSSv2
CVE-2020-27976
osCommerce Phoenix CE prior to 1.0.5.4 allows OS command injection remotely. Within admin/mail.php, a from POST parameter can be passed to the application. This affects the PHP mail function, and the sendmail -f option.
Oscommerce Oscommerce
6.8
CVSSv2
CVE-2011-0739
The deliver function in the sendmail delivery agent (lib/mail/network/delivery_methods/sendmail.rb) in Ruby Mail gem 2.2.14 and previous versions allows remote malicious users to execute arbitrary commands via shell metacharacters in an e-mail address.
Mikel Lindsaar Mail 2.2.12
Mikel Lindsaar Mail 2.2.11
Mikel Lindsaar Mail 2.2.5.2
Mikel Lindsaar Mail 2.2.5.1
Mikel Lindsaar Mail 2.1.5.2
Mikel Lindsaar Mail 2.1.5.1
Mikel Lindsaar Mail 2.2.10
Mikel Lindsaar Mail 2.2.9.1
Mikel Lindsaar Mail 2.2.5
Mikel Lindsaar Mail 2.2.4
Mikel Lindsaar Mail 2.2.3
Mikel Lindsaar Mail 2.1.5
Mikel Lindsaar Mail 2.1.3
Mikel Lindsaar Mail 1.5.3
Mikel Lindsaar Mail 1.5.2
Mikel Lindsaar Mail 1.3.5
Mikel Lindsaar Mail 1.3.4
Mikel Lindsaar Mail 1.2.7
Mikel Lindsaar Mail 1.2.6
Mikel Lindsaar Mail 1.6.0
Mikel Lindsaar Mail 1.5.4
Mikel Lindsaar Mail 1.4.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4651
CVE-2024-34255
elevation of privilege
CVE-2024-25529
CVE-2024-4671
NULL pointer dereference
CVE-2024-25527
template injection
CVE-2008-0166
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »