Junglewise Threat Intelligence

CVE-1999-0207: Majordomo command injection via Reply-To field in lists command

CVE-1999-0207 · Severity: high · CVSS 7.5 · Published 1994-06-09

Executive brief

Majordomo, a widely used mailing list management system, contains a vulnerability that allows remote attackers to execute unauthorized commands. By sending a specially crafted email with a malicious 'Reply-To' header and a specific command, an attacker can gain control over the system. This could lead to the theft of sensitive data, disruption of mailing list services, or further compromise of the underlying server.

Technical details

This vulnerability is a command injection flaw within the Majordomo mailing list manager. The issue resides in how the application processes the 'Reply-To' header when handling the 'lists' command. A remote, unauthenticated attacker can send a specially crafted email to the Majordomo service containing shell metacharacters in the 'Reply-To' field. When the software processes the 'lists' command, it fails to properly sanitize this input, leading to the execution of arbitrary system commands with the privileges of the Majordomo process. This allows for full system compromise depending on the permissions of the service account.

Affected products

  • Great Circle Associates Majordomo

Timeline

  • 1994-06-09: disclosed: Initial publication date recorded in NVD.

References

Related threats