Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Sendmail, attackers can gain root privileges via SMTP by specifying an improper "mail from" address and an invalid "rcpt to" address that would cause the mail to bounce to a program.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Sendmail 安全漏洞
Vulnerability Description
Sendmail 存在安全漏洞,远程攻击者可能利用此漏洞得到主机的root服务权限。5.x版本的Sendmail在处理无效的MAIL/RCPT命令时存在输入验证漏洞,Sendmail会不加检查地把用户输入的命令重定向到另一个程序执行,远程攻击者可能利用此漏洞在主机上以root用户的权限执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A