Product:

Mail_gem

(Rubygems)
Repositories https://github.com/mikel/mail
#Vulnerabilities 2
Date Id Summary Products Score Patch Annotated
2012-07-18 CVE-2012-2140 The Mail gem before 2.4.3 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in a (1) sendmail or (2) exim delivery. Mail_gem N/A
2012-07-18 CVE-2012-2139 Directory traversal vulnerability in lib/mail/network/delivery_methods/file_delivery.rb in the Mail gem before 2.4.4 for Ruby allows remote attackers to read arbitrary files via a .. (dot dot) in the to parameter. Mail_gem N/A