Unrated severityNVD Advisory· Published Dec 19, 2001· Updated Apr 16, 2026
CVE-2001-0889
CVE-2001-0889
Description
Exim 3.22 and earlier, in some configurations, does not properly verify the local part of an address when redirecting the address to a pipe, which could allow remote attackers to execute arbitrary commands via shell metacharacters.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- www.redhat.com/support/errata/RHSA-2001-176.htmlnvdPatchVendor Advisory
- www.kb.cert.org/vuls/id/283723nvdUS Government Resource
- marc.infonvd
- www.debian.org/security/2002/dsa-097nvd
- www.securityfocus.com/bid/3728nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/7738nvd
News mentions
0No linked articles in our index yet.