7.5
CVSSv2

CVE-2016-1000282

Published: 05/02/2019 Updated: 06/02/2019
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 790
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Haraka version 2.8.8 and previous versions comes with a plugin for processing attachments for zip files. Versions 2.8.8 and previous versions can be vulnerable to command injection.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

haraka project haraka

Exploits

Haraka versions prior to 289 suffer from a remote command execution vulnerability ...