PT-2020-5653 · Php+3 · Phpmailer+3

Elar Lang

·

Published

2020-05-27

·

Updated

2024-06-15

·

CVE-2020-13625

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions PHPMailer versions prior to 6.1.6
Description The issue is related to an output escaping bug in PHPMailer. When the name of a file attachment contains a double quote character, it can result in the file type being misinterpreted by the receiver or any mail relay processing the message. This bug is associated with a lack of output encoding or escaping mechanism in multiple functions of the PHPMailer class. The exploitation of this bug can allow a remote attacker to impact data integrity.
Recommendations For versions prior to 6.1.6, update to version 6.1.6 or later to resolve the issue. As a temporary workaround, consider avoiding the use of double quote characters in file attachment names until a patch is applied. Restrict access to the vulnerable PHPMailer functions to minimize the risk of exploitation.

Exploit

Fix

Improper Encoding or Escaping of Output

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2021-01353
BIT-PHPMAILER-2020-13625
CVE-2020-13625
DLA-2244-1
DLA-2306-1
GHSA-F7HX-FQXW-RVVJ
MGASA-2020-0313
OPENSUSE-SU-2020:1060-1
OPENSUSE-SU-2020:1106-1
OPENSUSE-SU-2020_1060-1
OPENSUSE-SU-2024:10670-1
USN-4505-1
USN-5956-1

Affected Products

Linuxmint
Phpmailer
Suse
Ubuntu