CVE-2016-10034
CRITICAL 9.8EPSS 38.4%
The setFrom function in the Sendmail adapter in the zend-mail component before 2.4.11, 2.5.x, 2.6.x, and 2.7.x before 2.7.2, and Zend Framework before 2.4.11 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted e-mail address.
- CVSS v3.0
- 9.8 CRITICAL
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v3.0
- 9.8 CRITICAL
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P - EPSS
- 38.44% chance of exploitation in the next 30 days, 98th percentile
- Published
- 2016-12-30
- Updated
- 2024-08-06
Proof-of-concept exploits (3)
- https://legalhackers.com/advisories/ZendFramework-Exploit-ZendMail-Remote-Code-Exec-CVE-2…
- heikipikker/exploit-CVE-2016-100340★ · 2017-07-18
- pitecozz/RCE-VUL0★ · 2024-05-09
ExploitDB entries (3)
- https://www.exploit-db.com/exploits/42221
- https://www.exploit-db.com/exploits/40986
- https://www.exploit-db.com/exploits/40979