CVS 2023-42115

Exim Remote Code Execution Vulnerability (CVS 2023-42115) Notification

October 10, 2023

Overview Recently, NSFOCUS CERT detected an Exim remote code execution vulnerability (CVE-2023-42115). When external authentication is enabled, due to improper user input verification, an unauthenticated attacker can remotely exploit this vulnerability by writing data beyond the bounds, ultimately executing arbitrary code on the target server. At present, the details of the vulnerability have been disclosed. […]

Search

Subscribe to the NSFOCUS Blog