The mailSend function in the isMail transport in PHPMailer before 5.2.18 might allow remote attackers to pass extra parameters to the mail command and consequently execute arbitrary code via a " (backslash double quote) in a crafted Sender property.
| Software | From | Fixed in |
|---|---|---|
| phpmailer_project / phpmailer | - | 5.2.18 |
| WordPress / wordpress | - | 4.7.x |
| Joomla / joomla | 1.5.0 | 3.6.5.x |
phpmailer / phpmailer
|
5.0.0 | 5.2.18 |