First published: Tue Dec 19 2000(Updated: )
Horde library 1.02 allows attackers to execute arbitrary commands via shell metacharacters in the "from" address.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Horde | =1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-0910 has a moderate severity rating due to the potential for arbitrary command execution.
To fix CVE-2000-0910, upgrade to a patched version of the Horde library that addresses this vulnerability.
CVE-2000-0910 could allow attackers to execute arbitrary commands on the server through crafted email headers.
CVE-2000-0910 specifically affects Horde library version 1.2.
CVE-2000-0910 remains a risk if the affected version of Horde library is still in use without mitigation.