2017-10-16 12:31:07 -04:00
{
2019-03-18 03:52:48 +00:00
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org" ,
"ID" : "CVE-2002-1165" ,
"STATE" : "PUBLIC"
} ,
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a" ,
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
} ,
"vendor_name" : "n/a"
}
]
}
} ,
"data_format" : "MITRE" ,
"data_type" : "CVE" ,
"data_version" : "4.0" ,
"description" : {
"description_data" : [
2017-10-16 12:31:07 -04:00
{
2019-03-18 03:52:48 +00:00
"lang" : "eng" ,
"value" : "Sendmail Consortium's Restricted Shell (SMRSH) in Sendmail 8.12.6, 8.11.6-15, and possibly other versions after 8.11 from 5/19/1998, allows attackers to bypass the intended restrictions of smrsh by inserting additional commands after (1) \"||\" sequences or (2) \"/\" characters, which are not properly filtered or verified."
2017-10-16 12:31:07 -04:00
}
2019-03-18 03:52:48 +00:00
]
} ,
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng" ,
"value" : "n/a"
}
]
}
]
} ,
"references" : {
"reference_data" : [
{
"name" : "RHSA-2003:073" ,
"refsource" : "REDHAT" ,
"url" : "http://www.redhat.com/support/errata/RHSA-2003-073.html"
} ,
{
"name" : "CLA-2002:532" ,
"refsource" : "CONECTIVA" ,
"url" : "http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000532"
} ,
{
"name" : "NetBSD-SA2002-023" ,
"refsource" : "NETBSD" ,
"url" : "ftp://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2002-023.txt.asc"
} ,
{
"name" : "20021001 iDEFENSE Security Advisory 10.01.02: Sendmail smrsh bypass vulnerabilities" ,
"refsource" : "BUGTRAQ" ,
"url" : "http://marc.info/?l=bugtraq&m=103350914307274&w=2"
} ,
{
"name" : "sendmail-forward-bypass-smrsh(10232)" ,
"refsource" : "XF" ,
"url" : "http://www.iss.net/security_center/static/10232.php"
} ,
{
"name" : "MDKSA-2002:083" ,
"refsource" : "MANDRIVA" ,
"url" : "http://www.mandriva.com/security/advisories?name=MDKSA-2002:083"
} ,
{
"name" : "http://www.sendmail.org/smrsh.adv.txt" ,
"refsource" : "CONFIRM" ,
"url" : "http://www.sendmail.org/smrsh.adv.txt"
} ,
{
"name" : "5845" ,
"refsource" : "BID" ,
"url" : "http://www.securityfocus.com/bid/5845"
} ,
{
"name" : "7826" ,
"refsource" : "SECUNIA" ,
"url" : "http://secunia.com/advisories/7826"
}
]
}
}