← All CVEs

CVE-2007-5208

high · 7.6

hpssd in Hewlett-Packard Linux Imaging and Printing Project (hplip) 1.x and 2.x before 2.7.10 allows context-dependent attackers to execute arbitrary commands via shell metacharacters in a from address, which is not properly handled when invoking sendmail.

7.6
CVSS
67.3%
EPSS (exploit prob.)
99th
EPSS percentile
2007-10-13
Published

AV:N/AC:H/Au:N/C:C/I:C/A:C

Weaknesses

CWE-20

Affected products

VendorProductAffected versions
hplinux_imaging_and_printing_project<= 2.7.10
hplinux_imaging_and_printing_project1.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2007-5208