« Volver al listado

CVE-2007-3215

Estado: ModificadaMedia (6.8)—

PHPMailer 1.7, when configured to use sendmail, allows remote attackers to execute arbitrary shell commands via shell metacharacters in the SendmailSend function in class.phpmailer.php.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2007-3215",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 6.8,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:M/Au:N/C:P/I:P/A:P",
          "authentication": "NONE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "MEDIUM",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 6.4,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 8.6,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": true,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "cve@mitre.org",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2007-06-14T22:30:00.000",
  "references": [
    {
      "url": "http://larholm.com/2007/06/11/phpmailer-0day-remote-execution/",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/37206",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://osvdb.org/76139",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://seclists.org/fulldisclosure/2011/Oct/223",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/25626",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/25755",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://secunia.com/advisories/25758",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://securityreason.com/securityalert/2802",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://sourceforge.net/project/shownotes.php?release_id=517428&group_id=157374",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.debian.org/security/2007/dsa-1315",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/archive/1/471065/100/0/threaded",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.securityfocus.com/bid/24417",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2007/2161",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2007/2267",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://yehg.net/lab/pr0js/advisories/%5BvTiger_5.2.1%5D_rce",
      "source": "cve@mitre.org"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34818",
      "source": "cve@mitre.org"
    },
    {
      "url": "https://sourceforge.net/tracker/index.php?func=detail&aid=1734811&group_id=26031&atid=385707",
      "source": "cve@mitre.org"
    },
    {
      "url": "http://larholm.com/2007/06/11/phpmailer-0day-remote-execution/",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://osvdb.org/37206",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://osvdb.org/76139",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://seclists.org/fulldisclosure/2011/Oct/223",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/25626",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/25755",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://secunia.com/advisories/25758",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://securityreason.com/securityalert/2802",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://sourceforge.net/project/shownotes.php?release_id=517428&group_id=157374",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.debian.org/security/2007/dsa-1315",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/archive/1/471065/100/0/threaded",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.securityfocus.com/bid/24417",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2007/2161",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.vupen.com/english/advisories/2007/2267",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://yehg.net/lab/pr0js/advisories/%5BvTiger_5.2.1%5D_rce",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/34818",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://sourceforge.net/tracker/index.php?func=detail&aid=1734811&group_id=26031&atid=385707",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-Other"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "PHPMailer 1.7, when configured to use sendmail, allows remote attackers to execute arbitrary shell commands via shell metacharacters in the SendmailSend function in class.phpmailer.php."
    },
    {
      "lang": "es",
      "value": "PHPMailer 1.7, cuando está configurado para utilizar sendmail, permite a atacantes remotos ejecutar comandos del intérprete de comandos (shell) a través de los metacaracterés del intérprete de comandos en la función SendmailSend en class.phpmailer.php."
    }
  ],
  "lastModified": "2026-06-16T22:41:17.177",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:phpmailer:phpmailer:1.7:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "65A453FF-9AC7-4A84-B1FA-735B38ABEC1C"
            },
            {
              "criteria": "cpe:2.3:a:phpmailer:phpmailer:1.7.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "F3611829-7CF3-43B1-A8AC-979124BE9C79"
            },
            {
              "criteria": "cpe:2.3:a:phpmailer:phpmailer:1.7.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7D5FB20E-ADCB-4F79-842A-40E692D384C3"
            },
            {
              "criteria": "cpe:2.3:a:phpmailer:phpmailer:1.7.3:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6BFE740D-FAD1-4A16-8F49-4FF2BE69C21C"
            },
            {
              "criteria": "cpe:2.3:a:phpmailer:phpmailer:1.73:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7BF4FD90-8B03-4056-9CCD-1F587A163A38"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "evaluatorImpact": "Successful exploitation requires that the PHP script using PHPMailer is configured to send e-mails with the Sendmail method, and that the script does not sanitise data before storing it in the Sender property.\r\n",
  "sourceIdentifier": "cve@mitre.org"
}