CVE-2013-7103: OS Command Injection
McAfee Email Gateway 7.6 allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in the value attribute in a (1) TestFile XML element or the (2) hostname. NOTE: this issue can be combined with CVE-2013-7092 to allow remote attackers to execute commands.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-7103?
CVE-2013-7103 is classified with a high severity due to its potential for remote command execution.
How do I fix CVE-2013-7103?
To mitigate CVE-2013-7103, ensure that you apply the latest security patches provided by McAfee for Email Gateway 7.6.
What is the impact of CVE-2013-7103?
The impact of CVE-2013-7103 allows an authenticated attacker to execute arbitrary commands on the vulnerable system.
Who is affected by CVE-2013-7103?
CVE-2013-7103 affects McAfee Email Gateway version 7.6 used by organizations for email security.
Are there any known exploit techniques for CVE-2013-7103?
Exploitation of CVE-2013-7103 can involve using shell metacharacters in specific XML elements to gain command execution capabilities.