Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
eoc.py in Enemies of Carlotta (EoC) before 1.2.4 allows remote attackers to execute arbitrary commands via shell metacharacters in an "SMTP level e-mail address".
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Enemies of Carlotta Shell参数命令执行漏洞
Vulnerability Description
Enemies of Carlotta是一款简单的邮件列表管理器。 Enemies of Carlotta在处理用户参数时存在漏洞,攻击者可能利用此漏洞在用户机器上执行任意命令。 在被用作其他应用程序的shell参数之前,Enemies of Carlotta没有正确地过滤SMTP级的邮件地址,远程攻击者在邮件地址中嵌入shell元字符导致执行任意命令。
CVSS Information
N/A
Vulnerability Type
N/A