SA Exim Project develops a narrowly scoped mail-filtering add-on for the Exim mail transfer agent, serving deployments where the agent itself is already in place. The vulnerability exposure reported for this vendor reflects its focused product footprint and integration role within a larger mail infrastructure; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Sa Exim Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-19920HIGH sa-exim 4.2.1 allows attackers to execute arbitrary code if they can write a .cf file or a rule. This occurs because Greylisting.pm relies on eval (rather than direct parsing and/o | Dec 22, 2019 | 8.8 | 28 | NO | NO |
CVE-2006-1251MEDIUM Argument injection vulnerability in greylistclean.cron in sa-exim 4.2 allows remote attackers to delete arbitrary files via an email with a To field that contains a filename separa | Mar 19, 2006 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sa Exim Project.
Media articles that mention a CVE ID that affects a product developed by Sa Exim Project — matched by CVE ID, not by vendor name.