Apache / Spamassassin
13 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2020-1946 | Apache SpamAssassin has an OS Command Injection vulnerability | CRITICAL | 9.8 | Mar 25, 2021 |
| CVE-2020-1930 | spamassassin: command injection via crafted configuration file | HIGH | 8.1 | Jan 30, 2020 |
| CVE-2020-1931 | spamassassin: command injection via crafted configuration file | HIGH | 8.1 | Jan 30, 2020 |
| CVE-2019-12420 | spamassassin: crafted email message can lead to DoS | HIGH | 7.5 | Dec 12, 2019 |
| CVE-2018-11805 | spamassassin: crafted configuration files can run system commands without any output or errors | MEDIUM | 6.7 | Dec 12, 2019 |
| CVE-2018-11781 | spamassassin: Local user code injection in the meta rule syntax | HIGH | 8.4 | Sep 17, 2018 |
| CVE-2018-11780 | spamassassin: Potential remote code execution vulnerability in PDFInfo plugin | CRITICAL | 9.8 | Sep 17, 2018 |
| CVE-2017-15705 | spamassassin: Certain unclosed tags in crafted emails allow for scan timeouts and result in denial of service | HIGH | 7.5 | Sep 17, 2018 |
| CVE-2016-1238 | perl: loading of modules from current directory | HIGH | 7.8 | Aug 2, 2016 |
| CVE-2007-0451 | security flaw | MEDIUM | 4.3 | Feb 16, 2007 |
| CVE-2006-2447 | security flaw | MEDIUM | 5.1 | Jun 6, 2006 |
| CVE-2005-3351 | security flaw | MEDIUM | 5.0 | Nov 20, 2005 |
| CVE-2005-1266 | security flaw | MEDIUM | 5.0 | Jun 22, 2005 |
Showing 1 to 13 of 13 CVEs