First published: Fri Aug 11 2006(Updated: )
preview_email.cgi in Barracuda Spam Firewall (BSF) 3.3.01.001 through 3.3.03.053 allows remote attackers to execute commands via shell metacharacters ("|" pipe symbol) in the file parameter. NOTE: the attack can be extended to arbitrary commands by the presence of CVE-2006-4000.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Barracuda Networks Barracuda Spam Firewall | =3.3.01.001 | |
Barracuda Networks Barracuda Spam Firewall | =3.3.03.053 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.