CVE-2002-1582
compose.cgi in Mailreader.com 2.3.30 and 2.3.31, when using Sendmail as the Mail Transfer Agent, allows remote attackers to execute arbitrary commands via shell metacharacters in the RealEmail configuration variable, which is used to call Sendmail in network.cgi.
- Affected products
- Mailreader.Com, Sendmail
- Mailreader.com
- = 2.3.30, 2.3.31
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 3.6% (88th percentile)
- NVD status
- Modified
- Published
- 2004-07-06
CVE-2002-1582 at NVD
No indexed exploits for CVE-2002-1582 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2002-1582 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.