RULE(RULE ID:317157)

Rule General Information
Release Date: 2017-05-24
Rule Name: Phpmailer Mail Sender Command Injection Vulnerability -3 (CVE-2016-10033)
Severity:
CVE ID:
Rule Protection Details
Description: The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a \" (backslash double quote) in a crafted Sender property.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: FreeBSD, Linux, Windows, Mac OS, Other Unix, Others
Reference: SecurityFocusBID:95108
SecurityTrackerID:1037533
ExploitDB:40968
ExploitDB:40970
Solutions
More advisories have been published on the website, please visit for more suggestions:
https://github.com/PHPMailer/PHPMailer/blob/master/SECURITY.md