Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26306
HistoryAug 11, 2020 - 3:23 a.m.

OS Command Injection

2020-08-1103:23:30
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15
command injection
apache spamassassin
arbitrary commands
rule configuration files

EPSS

0.008

Percentile

82.3%

apache spamassassin is vulnerable to OS command injection. An attacker is able to inject and execute arbitrary OS commands via nefarious rule configuration (.cf) files.