Back

CRITICAL

mutt: Remote code injection vulnerability to an IMAP mailbox

Published Jul 17, 2018

Description

An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command associated with a manual subscription or unsubscription.

Affected products

Remediation

No remediation recorded yet.

References (17)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jul 17, 2018
Updated Aug 5, 2024
Reserved Jul 17, 2018
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Important
Public date Jul 16, 2018
ENISA EUVD
Assigner mitre
Published Jul 17, 2018
Updated Aug 5, 2024
Exploited since n/a
EUVD-2018-6275