CVE-1999-1154

CVSS 2.0 Score 7.5 of 10 (high)

Details

Published Nov 9, 1998
Updated: Nov 20, 2024

Summary

CVE-1999-1154 is a vulnerability affecting the LakeWeb Filemail CGI script. An attacker can exploit this weakness by crafting a specially crafted email address containing shell metacharacters. This allows the attacker to execute arbitrary commands on the targeted system, potentially leading to unauthorized access or data theft. The vulnerability poses a significant risk, as it can be exploited remotely without requiring any authentication or prior knowledge of the target's email account. It is strongly recommended to patch or replace the affected software as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share