PT-2020-5653 · Php+3 · Phpmailer+3
Elar Lang
·
Published
2020-05-27
·
Updated
2024-06-15
·
CVE-2020-13625
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
PHPMailer versions prior to 6.1.6
Description
The issue is related to an output escaping bug in PHPMailer. When the name of a file attachment contains a double quote character, it can result in the file type being misinterpreted by the receiver or any mail relay processing the message. This bug is associated with a lack of output encoding or escaping mechanism in multiple functions of the PHPMailer class. The exploitation of this bug can allow a remote attacker to impact data integrity.
Recommendations
For versions prior to 6.1.6, update to version 6.1.6 or later to resolve the issue. As a temporary workaround, consider avoiding the use of double quote characters in file attachment names until a patch is applied. Restrict access to the vulnerable PHPMailer functions to minimize the risk of exploitation.
Exploit
Fix
Improper Encoding or Escaping of Output
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Linuxmint
Phpmailer
Suse
Ubuntu