Total vulnerabilities in the database
PHPMailer before 6.1.6 contains an output escaping bug when the name of a file attachment contains a double quote character. This can result in the file type being misinterpreted by the receiver or any mail relay processing the message.
Software | From | Fixed in |
---|---|---|
phpmailer_project / phpmailer | - | 6.1.6 |
fedoraproject / fedora | 31 | 31.x |
fedoraproject / fedora | 32 | 32.x |
canonical / ubuntu_linux | 18.04 | 18.04.x |
debian / debian_linux | 8.0 | 8.0.x |
debian / debian_linux | 9.0 | 9.0.x |
![]() |
- | 6.1.6 |