CVE-2019-10149
A flaw was found in Exim versions 4.87 to 4.91 (inclusive). Improper validation of recipient address in deliver_message() function in /src/deliver.c may lead to remote command execution.
- Exim
- β€ 4.91
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- CVSS 3.1
- 9.8 CRITICAL
- EPSS
- 100.0% (100th percentile)
- Weakness
- CWE-78
- NVD status
- Analyzed
- Published
- 2019-06-05
CVE-2019-10149 at NVD
44 known exploits for CVE-2019-10149
Proof-of-concept code and exploit modules indexed by Sploitus
exploits
CVE-2019-10149
CVE-2019-10149-quick
EXIM-4.87-CVE-2019-10149
CVE-2019-10149
CVE-2019-10149
CVE-2019-10149
PoC_CVE-2019-10149--rce
CVE-2019-10149-Exploit
PoC--CVE-2019-10149_Exim
CVE-2019-10149
CVE-2019-10149-privilege-escalation
exim-cve-2019-10149-data
exploits
CVE-2019-10149
CVE-2019-10149-Exim4-RCE
eximrce-CVE-2019-10149
Exim-CVE-2019-10149
exploits
π Exim 4.91 Remote Command Execution
Exploit for OS Command Injection in Exim
π Qualys Security Advisory - Exim 21Nails Advisory
Exploit for OS Command Injection in Exim
π Exim Vulnerability Scanner
Exploit for OS Command Injection in Exim
Exploit for OS Command Injection in Exim
Exploit for OS Command Injection in Exim
Exploit for OS Command Injection in Exim
Exim 4.87 / 4.91 - Local Privilege Escalation (Metasploit)
Exim 4.87 / 4.91 - Local Privilege Escalation Exploit
Exim 4.91 Local Privilege Escalation
Exploit for OS Command Injection in Exim
Exploit for OS Command Injection in Exim
Exim 4.91 Local Privilege Escalation Exploit
Exim 4.87 - 4.91 - Local Privilege Escalation
Exim 4.87 - 4.91 - Local Privilege Escalation
Exim 4.91 Local Privilege Escalation
Exploit for OS Command Injection in Exim
Exploit for OS Command Injection in Exim
Exim 4.87 < 4.91 - (Local / Remote) Command Execution Exploit
Exim 4.87 - 4.91 Local Privilege Escalation
Immunity Canvas: EXIM_EXPANSION_RCE
Exim 4.87 4.91 - (Local Remote) Command Execution
Exim 4.87 < 4.91 - (Local / Remote) Command Execution