This script is Copyright (C) 2010-2014 Tenable Network Security, Inc.
The remote Mandriva Linux host is missing one or more security
Multiple vulnerabilities were discovered and corrected in php-pear
Argument injection vulnerability in the sendmail implementation of the
Mail::Send method (Mail/sendmail.php) in the Mail package 1.1.14 for
PEAR allows remote attackers to read and write arbitrary files via a
crafted parameter, a different vector than CVE-2009-4111
Argument injection vulnerability in Mail/sendmail.php in the Mail
package 1.1.14, 1.2.0b2, and possibly other versions for PEAR allows
remote attackers to read and write arbitrary files via a crafted
parameter, and possibly other parameters, a different vulnerability
than CVE-2009-4023 (CVE-2009-4111).
Packages for 2008.0 are provided for Corporate Desktop 2008.0
The updated packages have been patched to correct these issues.
Update the affected php-pear and / or php-pear-Mail packages.
Risk factor :
High / CVSS Base Score : 7.5
CVSS Temporal Score : 6.5
Public Exploit Available : true