CVE-2010-1132

The mlfi_envrcpt function in spamass-milter.cpp in SpamAssassin Milter Plugin 0.3.1, when using the expand option, allows remote attackers to execute arbitrary system commands via shell metacharacters in the RCPT TO field of an email message.
OS Command Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 95%
VendorProductVersion
georg_grevespamassassin_milter_plugin
0.3.1
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
spamass-milter
sid
0.4.0-2
fixed
trixie
0.4.0-2
fixed
bookworm
0.4.0-2
fixed
bullseye
0.4.0-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
spamass-milter
oneiric
not-affected
natty
not-affected
maverick
not-affected
lucid
not-affected
karmic
Fixed 0.3.1-8+lenny1build0.9.10.1
released
jaunty
Fixed 0.3.1-8+lenny1build0.9.04.1
released
intrepid
ignored
hardy
ignored
dapper
ignored
References