[exim] Exim with Dovecot: Typical Misconfiguration Leads to …

Góra strony
Delete this message
Reply to this message
Autor: Michael Seidel
Data:  
Dla: exim-users
Temat: [exim] Exim with Dovecot: Typical Misconfiguration Leads to Remote Command Execution
Hello,

if you are using Exim with Dovecot's Local Delivery Agent, your setup can
contain a security problem. The use_shell is insecure.

FYI:
https://www.redteam-pentesting.de/de/advisories/rt-sa-2013-001/-exim-with-dovecot-typical-misconfiguration-leads-to-remote-command-execution


--
Many greetings from M'gladbach/Germany
Viele Gruesse aus Mönchengladbach
Michael Seidel