uw-imap_project CVE Vulnerabilities & CVE List (1)

Products (CPE): — CVEs: 1

uw-imap_project vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to uw-imap_project, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 11 of 1 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2018-19518 University of Washington IMAP Toolkit 2007f on UNIX, as used in imap_open() in PHP and other products, launches an rsh command (by means of the imap_rimap function in c-client/imap4r1.c and the tcp_aopen function in osdep/unix/tcp_unix.c) without preventing argument injection, which might allow remote attackers to execute arbitrary OS commands if the IMAP server name is untrusted input (e.g., entered by a user of a web application) and if rsh has been replaced by a program with different argumen [email protected] 7.5 93.87% 2018-11-25 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence