Exim With Dovecot Misconfiguration Remote Command Execution Vulnerability
Publish date: 21 de julio de 2015
Gravedad: Crítico
Fecha recomendada: 21 de julio de 2015
Descripción
Dovecot, when configured with Exim as a local delivery agent, contains a flaw that is due to the program failing to properly sanitize input in the 'sender_address' parameter, which is supplied via a 'MAIL FROM' header. This may allow a remote attacker to execute arbitrary commands.
Revelación de la información
Apply associated Trend Micro DPI Rules.
Soluciones
Trend Micro Deep Security DPI Rule Number: 1005495