Vulnerabilities > Georg Greve

DATE CVE VULNERABILITY TITLE RISK
2010-03-27 CVE-2010-1132 OS Command Injection vulnerability in Georg Greve Spamassassin Milter Plugin 0.3.1
The mlfi_envrcpt function in spamass-milter.cpp in SpamAssassin Milter Plugin 0.3.1, when using the expand option, allows remote attackers to execute arbitrary system commands via shell metacharacters in the RCPT TO field of an email message.
network
georg-greve CWE-78
critical
9.3