Vulnerabilities > SA Exim

DATE CVE VULNERABILITY TITLE RISK
2006-03-19 CVE-2006-1251 Code Injection vulnerability in Sa-Exim 4.0/4.1/4.2
Argument injection vulnerability in greylistclean.cron in sa-exim 4.2 allows remote attackers to delete arbitrary files via an email with a To field that contains a filename separated by whitespace, which is not quoted when greylistclean.cron provides the argument to the rm command.
network
low complexity
sa-exim CWE-94
5.0