Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4953
HistoryAug 23, 2017 - 8:09 a.m.

Remote Code Execution (RCE)

2017-08-2308:09:52
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

EPSS

0.964

Percentile

99.6%

zend-mail is vulnerable to remote code execution (RCE) attacks. The library does not properly sanitize input, allowing a malicious user to inject and execute arbitrary code using a \\ character.