7.5
CVSSv2

CVE-2005-0103

Published: 24/01/2005 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in webmail.php in SquirrelMail prior to 1.4.4 allows remote malicious users to execute arbitrary PHP code by modifying a URL parameter to reference a URL on a remote web server that contains the code.

Vulnerable Product Search on Vulmon Subscribe to Product

squirrelmail squirrelmail 1.2.10

squirrelmail squirrelmail 1.2.11

squirrelmail squirrelmail 1.2.9

squirrelmail squirrelmail 1.4

squirrelmail squirrelmail 1.2.2

squirrelmail squirrelmail 1.2.3

squirrelmail squirrelmail 1.0.4

squirrelmail squirrelmail 1.0.5

squirrelmail squirrelmail 1.2.4

squirrelmail squirrelmail 1.2.5

squirrelmail squirrelmail 1.4.2

squirrelmail squirrelmail 1.4.3

squirrelmail squirrelmail 1.4.0

squirrelmail squirrelmail 1.4.1

squirrelmail squirrelmail 1.2.0

squirrelmail squirrelmail 1.2.1

squirrelmail squirrelmail 1.2.6

squirrelmail squirrelmail 1.2.7

squirrelmail squirrelmail 1.2.8

squirrelmail squirrelmail 1.4.3_rc1

squirrelmail squirrelmail 1.4.3a

Vendor Advisories

Synopsis squirrelmail security update Type/Severity Security Advisory: Low Topic An updated Squirrelmail package that fixes several security issues is nowavailable for Red Hat Enterprise Linux 3 Description SquirrelMail is a standards-based webmail package written in PHP4Jimmy Conner disc ...
Synopsis squirrelmail security update Type/Severity Security Advisory: Moderate Topic An updated Squirrelmail package that fixes several security issues is nowavailable for Red Hat Enterprise Linux 4This update has been rated as having moderate security impact by the Red HatSecurity Response Team ...