10
CVSSv2

CVE-2004-0521

Published: 18/08/2004 Updated: 11/10/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

SQL injection vulnerability in SquirrelMail prior to 1.4.3 RC1 allows remote malicious users to execute unauthorized SQL statements, with unknown impact, probably via abook_database.php.

Vulnerable Product Search on Vulmon Subscribe to Product

squirrelmail squirrelmail 1.0.5

squirrelmail squirrelmail 1.2.0

squirrelmail squirrelmail 1.2.5

squirrelmail squirrelmail 1.2.6

squirrelmail squirrelmail 1.2.11

squirrelmail squirrelmail 1.2.2

squirrelmail squirrelmail 1.2.9

squirrelmail squirrelmail 1.4

sgi propack 3.0

squirrelmail squirrelmail 1.0.4

squirrelmail squirrelmail 1.2.3

squirrelmail squirrelmail 1.2.4

squirrelmail squirrelmail 1.4.1

squirrelmail squirrelmail 1.4.2

squirrelmail squirrelmail 1.2.1

squirrelmail squirrelmail 1.2.10

squirrelmail squirrelmail 1.2.7

squirrelmail squirrelmail 1.2.8

Vendor Advisories

Synopsis squirrelmail security update Type/Severity Security Advisory: Important Topic An updated SquirrelMail package that fixes several security vulnerabilitiesis now available Description SquirrelMail is a webmail package written in PHP Multiplevulnerabilities have been found which af ...