CVE-2006-2447

Source
https://nvd.nist.gov/vuln/detail/CVE-2006-2447
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2006-2447.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2006-2447
Downstream
Published
2006-06-06T21:06:00Z
Modified
2025-08-09T19:01:27Z
Summary
[none]
Details

SpamAssassin before 3.1.3, when running with vpopmail and the paranoid (-P) switch, allows remote attackers to execute arbitrary commands via a crafted message that is not properly handled when invoking spamd with the virtual pop username.

References

Affected packages