CVE-2001-0937: High severity matt wright pgpmail.pl vulnerability
Published Nov 30, 2001
·Updated
PGPMail.pl 1.31 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) recipient or (2) pgpuserid parameters.
Affected Software
1 affected component
Matt Wright Pgpmail.pl=1.31
Event History
Nov 30, 2001
CVE Published
05:00 AM
Feb 2, 2002
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is CVE-2001-0937?
CVE-2001-0937 is a vulnerability in PGPMail.pl 1.31 that allows remote attackers to execute arbitrary commands via shell metacharacters in specific parameters.
2
What is the severity of CVE-2001-0937?
CVE-2001-0937 is considered a high severity vulnerability due to its potential for remote command execution.
3
How do I fix CVE-2001-0937?
To fix CVE-2001-0937, upgrade PGPMail.pl to the latest version or apply patches that validate input parameters to prevent command injection.
4
What versions are affected by CVE-2001-0937?
CVE-2001-0937 specifically affects version 1.31 of PGPMail.pl.
5
Can CVE-2001-0937 be exploited remotely?
Yes, CVE-2001-0937 can be exploited remotely by attackers through crafted inputs to the vulnerable parameters.