CVE-2017-15806 | Zeta Components Mail up to 1.8.1 file.php. ezcMailMtaTransport code injection (Issue 58 / EDB-43155)
A vulnerability was found in Zeta Components Mail up to 1.8.1. It has been declared as critical. This affects the function ezcMailMtaTransport of the file -X/path/to/wwwroot/file.php.. Such manipulation leads to code injection.
This vulnerability is referenced as CVE-2017-15806. It is possible to launch the attack remotely. Furthermore, an exploit is available.
It is recommended to upgrade the affected component.