Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:26844
HistorySep 21, 2020 - 6:21 a.m.

Arbitrary Code Execution

2020-09-2106:21:37
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14
sa-exim
arbitrary code execution
greylisting.pm
eval
taint feature
vulnerability

EPSS

0.002

Percentile

53.5%

sa-exim is vulnerable to arbitrary code execution. The vulnerability exists through the reliance of eval by Greylisting.pm, rather than direct parsing and/or use of the taint feature.