[exim] Exim with Dovecot: Typical Misconfiguration Leads to …

Kezdőlap
Üzenet törlése
Válasz az üzenetre
Szerző: Michael Seidel
Dátum:  
Címzett: exim-users
Tárgy: [exim] Exim with Dovecot: Typical Misconfiguration Leads to Remote Command Execution
Hello,

if you are using Exim with Dovecot's Local Delivery Agent, your setup can
contain a security problem. The use_shell is insecure.

FYI:
https://www.redteam-pentesting.de/de/advisories/rt-sa-2013-001/-exim-with-dovecot-typical-misconfiguration-leads-to-remote-command-execution


--
Many greetings from M'gladbach/Germany
Viele Gruesse aus Mönchengladbach
Michael Seidel