CVE-2005-3539 EXPLOIT
7.5
HIGH · CVSS 2.0 · EPSS 12.7% (pctl 96)
Patch early
A public exploit exists.
Description
Multiple eval injection vulnerabilities in HylaFAX 4.2.3 and earlier allow remote attackers to execute arbitrary commands via (1) the notify script in HylaFAX 4.2.0 to 4.2.3 and (2) crafted CallID parameters to the faxrcvd script in HylaFAX 4.2.2 and 4.2.3.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 12.65% — more likely to be exploited than 96% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2005-12-31 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| hylafax | hylafax |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Hylafax 4.1/4.2 (Multiple Scripts) - Remote Command Execution | 2006-01-05 |
References
- http://bugs.hylafax.org/bugzilla/show_bug.cgi?id=719
- http://secunia.com/advisories/18314
- http://secunia.com/advisories/18337
- http://secunia.com/advisories/18366
- http://secunia.com/advisories/18489
- http://www.debian.org/security/2005/dsa-933
- http://www.gentoo.org/security/en/glsa/glsa-200601-03.xml
- http://www.hylafax.org/content/HylaFAX_4.2.4_release
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:015
- http://www.securityfocus.com/archive/1/420974/100/0/threaded
- http://www.securityfocus.com/bid/16151
- http://www.vupen.com/english/advisories/2006/0072
- http://bugs.hylafax.org/bugzilla/show_bug.cgi?id=719
- http://secunia.com/advisories/18314
- http://secunia.com/advisories/18337
- http://secunia.com/advisories/18366
- http://secunia.com/advisories/18489
- http://www.debian.org/security/2005/dsa-933
- http://www.gentoo.org/security/en/glsa/glsa-200601-03.xml
- http://www.hylafax.org/content/HylaFAX_4.2.4_release
→ the Explorer · watch your stack · NVD