Oval Definition:oval:com.ubuntu.xenial:def:201610045000
Revision Date:2016-12-30Version:1
Title:CVE-2016-10045 on Ubuntu 16.04 LTS (xenial) - medium.
Description:The isMail transport in PHPMailer before 5.2.20 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code by leveraging improper interaction between the escapeshellarg function and internal escaping performed in the mail function in PHP. NOTE: this vulnerability exists because of an incorrect fix for CVE-2016-10033.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-10045
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND The 'libphp-phpmailer' package in xenial is affected and needs fixing.
  • BACK