{"id":"GHSA-pr44-4jfr-286m","summary":"Swift Mailer mail transport Command Injection","details":"The mail transport (aka Swift_Transport_MailTransport) in Swift Mailer before 5.4.5 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \\\" (backslash double quote) in a crafted e-mail address in the (1) From, (2) ReturnPath, or (3) Sender header.","aliases":["CVE-2016-10074"],"modified":"2025-04-14T22:43:42.257110Z","published":"2022-05-17T00:27:49Z","database_specific":{"github_reviewed_at":"2024-04-24T22:03:23Z","nvd_published_at":"2016-12-30T19:59:00Z","cwe_ids":["CWE-77"],"severity":"CRITICAL","github_reviewed":true},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2016-10074"},{"type":"WEB","url":"https://github.com/FriendsOfPHP/security-advisories/blob/master/swiftmailer/swiftmailer/CVE-2016-10074.yaml"},{"type":"WEB","url":"https://github.com/swiftmailer/swiftmailer/blob/5.x/CHANGES"},{"type":"WEB","url":"https://legalhackers.com/advisories/SwiftMailer-Exploit-Remote-Code-Exec-CVE-2016-10074-Vuln.html"},{"type":"WEB","url":"https://www.exploit-db.com/exploits/40972"},{"type":"WEB","url":"https://www.exploit-db.com/exploits/40986"},{"type":"WEB","url":"https://www.exploit-db.com/exploits/42221"},{"type":"WEB","url":"http://packetstormsecurity.com/files/140290/SwiftMailer-Remote-Code-Execution.html"},{"type":"WEB","url":"http://seclists.org/fulldisclosure/2016/Dec/86"},{"type":"WEB","url":"http://www.debian.org/security/2017/dsa-3769"},{"type":"WEB","url":"http://www.securityfocus.com/bid/95140"}],"affected":[{"package":{"name":"swiftmailer/swiftmailer","ecosystem":"Packagist","purl":"pkg:composer/swiftmailer/swiftmailer"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"5.4.5"}]}],"versions":["4.1.3","4.1.4","4.1.5","4.1.6","4.1.7","v4.1.8","v4.2.0","v4.2.1","v4.2.2","v4.3.0","v4.3.1","v5.0.0","v5.0.1","v5.0.2","v5.0.3","v5.1.0","v5.2.0","v5.2.1","v5.2.2","v5.3.0","v5.3.1","v5.4.0","v5.4.1","v5.4.2","v5.4.3","v5.4.4"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-pr44-4jfr-286m/GHSA-pr44-4jfr-286m.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}