CVE-2010-4345Exim Privilege Escalation Vulnerability

PUBLISHEDvulnerability record
2022-03-25 · last modified June 21, 2025

Metadata

CVE ID:
CVE-2010-4345
Project:
Exim
Product:
Exim
Date Added:
2022-03-25
Due Date:
2022-04-15
Last Updated:
June 21, 2025

Vulnerability Name

Exim Privilege Escalation Vulnerability

Description

Exim allows local users to gain privileges by leveraging the ability of the exim user account to specify an alternate configuration file with a directive that contains arbitrary commands.

Known To Be Used in Ransomware Campaigns?

Ransomware Status:
Unknown

Action

Apply updates per vendor instructions.

Additional Notes

Related Weaknesses