Exim unauthenticated RCE with reports that it’s been used by Sandworm since August 2019
Recent assessments:
ericalexanderorg at May 28, 2020 4:49pm UTC reported:
Untested POC exists
https://github.com/MNEMO-CERT/PoC—CVE-2019-10149_Exim/blob/master/PoC_CVE-2019-10149.py
gwillcox-r7 at November 04, 2020 4:03pm UTC reported:
Untested POC exists
https://github.com/MNEMO-CERT/PoC—CVE-2019-10149_Exim/blob/master/PoC_CVE-2019-10149.py
Assessed Attacker Value: 5
Assessed Attacker Value: 5Assessed Attacker Value: 3