Lucene search

K
f5F5F5:K46057232
HistoryFeb 14, 2017 - 12:00 a.m.

K46057232 : Swift Mailer vulnerability CVE-2016-10074

2017-02-1400:00:00
my.f5.com
66

9.6 High

AI Score

Confidence

High

0.944 High

EPSS

Percentile

99.2%

Security Advisory Description

The mail transport (aka Swift_Transport_MailTransport) in Swift Mailer before 5.4.5 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a " (backslash double quote) in a crafted e-mail address in the (1) From, (2) ReturnPath, or (3) Sender header. (CVE-2016-10074)
Impact
There is no impact; F5 products are not affected by this vulnerability.