CVE-2011-1904

Severity CVSS v4.0:
Pending analysis
Type:
CWE-78 OS Command Injections
Publication date:
05/05/2011
Last modified:
11/04/2025

Description

An unspecified function in the web interface in Proofpoint Messaging Security Gateway 6.2.0.263:6.2.0.237 and earlier in Proofpoint Protection Server 5.5.3, 5.5.4, 5.5.5, 6.0.2, 6.1.1, and 6.2.0 allows remote attackers to execute arbitrary commands via unknown vectors, related to a "command injection" issue.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:proofpoint:messaging_security_gateway:*:*:*:*:*:*:*:* 6.2.0.263\:6.2.0.237 (including)
cpe:2.3:a:proofpoint:protection_server:5.5.3:*:*:*:*:*:*:*
cpe:2.3:a:proofpoint:protection_server:5.5.4:*:*:*:*:*:*:*
cpe:2.3:a:proofpoint:protection_server:5.5.5:*:*:*:*:*:*:*
cpe:2.3:a:proofpoint:protection_server:6.0.2:*:*:*:*:*:*:*
cpe:2.3:a:proofpoint:protection_server:6.1.1:*:*:*:*:*:*:*
cpe:2.3:a:proofpoint:protection_server:6.2.0:*:*:*:*:*:*:*