https://seclists.org/oss-sec/2025/q1/153: CVE-2025-26794: Exim: SQL injection
Published Feb 21, 2025
·Updated
Affected Software
1 affected component
Exim Exim
Frequently Asked Questions
1
What is the severity of CVE-2025-26794?
CVE-2025-26794 is classified as a high-severity SQL injection vulnerability affecting Exim.
2
How do I fix CVE-2025-26794?
To fix CVE-2025-26794, update Exim to version 4.98.1 or later.
3
What systems are affected by CVE-2025-26794?
CVE-2025-26794 impacts all versions of Exim prior to 4.98.1.
4
What type of vulnerability is CVE-2025-26794?
CVE-2025-26794 is an SQL injection vulnerability that allows attackers to manipulate database queries.
5
Can CVE-2025-26794 be exploited remotely?
Yes, CVE-2025-26794 can be exploited remotely, potentially allowing unauthorized access to sensitive data.