CVE
- Id
- 48651
- CVE No.
- CVE-2011-0739
- Status
- Candidate
- Description
- The deliver function in the sendmail delivery agent (lib/mail/network/delivery_methods/sendmail.rb) in Ruby Mail gem 2.2.14 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in an e-mail address.
- Phase
- Assigned (20110201)
- Votes
- None (candidate not yet proposed)
- Comments