Arbitrary Command Execution via Reply-To Header in Majordomo 1.94.3 and Earlier

Arbitrary Command Execution via Reply-To Header in Majordomo 1.94.3 and Earlier

CVE-1999-1220 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Majordomo 1.94.3 and earlier allows remote attackers to execute arbitrary commands when the advertise or noadvertise directive is used in a configuration file, via shell metacharacters in the Reply-To header.

Learn more about our Web Application Penetration Testing UK.