Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Apache SpamAssassin before 3.4.3, nefarious CF files can be configured to run system commands without any output or errors. With this, exploits can be injected in a number of scenarios. In addition to upgrading to SA 3.4.3, we recommend that users should only use update channels or 3rd party .cf files from trusted places.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache SpamAssassin 操作系统命令注入漏洞
Vulnerability Description
Apache SpamAssassin是美国阿帕奇(Apache)基金会的一款开源的垃圾邮件过滤器。该产品为系统管理员提供了一个过滤器,并支持对电子邮件进行分类阻止垃圾邮件。 Apache SpamAssassin 3.4.3之前版本中存在安全漏洞。攻击者可利用该漏洞运行系统命令。
CVSS Information
N/A
Vulnerability Type
N/A