Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2020-36326


PHPMailer 6.1.8 through 6.4.0 allows object injection through Phar Deserialization via addAttachment with a UNC pathname. NOTE: this is similar to CVE-2018-19296, but arose because 6.1.8 fixed a functionality problem in which UNC pathnames were always considered unreadable by PHPMailer, even in safe contexts. As an unintended side effect, this fix eliminated the code that blocked addAttachment exploitation.


Published

2021-04-28T03:15:07.400

Last Modified

2024-11-21T05:29:17.330

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

CVSSv2 Vector

AV:N/AC:L/Au:N/C:P/I:P/A:P

  • Access Vector: NETWORK
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

10.0

Impact Score

6.4

Weaknesses
  • Type: Primary
    CWE-502

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application phpmailer_project phpmailer ≤ 6.4.0 Yes
Application wordpress wordpress < 3.7.36 Yes
Application wordpress wordpress < 3.8.36 Yes
Application wordpress wordpress < 3.9.34 Yes
Application wordpress wordpress < 4.0.33 Yes
Application wordpress wordpress < 4.1.33 Yes
Application wordpress wordpress < 4.2.30 Yes
Application wordpress wordpress < 4.3.26 Yes
Application wordpress wordpress < 4.4.25 Yes
Application wordpress wordpress < 4.5.24 Yes
Application wordpress wordpress < 4.6.21 Yes
Application wordpress wordpress < 4.7.21 Yes
Application wordpress wordpress < 4.8.17 Yes
Application wordpress wordpress < 4.9.18 Yes
Application wordpress wordpress < 5.0.13 Yes
Application wordpress wordpress < 5.1.10 Yes
Application wordpress wordpress < 5.2.11 Yes
Application wordpress wordpress < 5.3.8 Yes
Application wordpress wordpress < 5.4.6 Yes
Application wordpress wordpress < 5.5.5 Yes
Application wordpress wordpress < 5.6.4 Yes
Application wordpress wordpress < 5.7.2 Yes

References