漏洞类别:Local
漏洞等级:
漏洞信息
Swift Mailer is a component-based library for sending e-mails from PHP applications.
An attacker can exploit this issue to execute arbitrary code within the context of the application. Failed exploit attempts will result in a denial-of-service condition.
Affected Version
SwiftMailer prior to 5.4.5
漏洞危害
On successful exploitation it allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code.
解决方案
Vendor has released update to address this vulnerability. Download it from here.
Patch:
Following are links for downloading patches to fix the vulnerabilities:
0day
文章评论