viewcert.php in the S/MIME plugin 0.4 and 0.5 for Squirrelmail allows remote malicious users to execute arbitrary commands via shell metacharacters in the cert parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
squirrelmail s mime plugin 0.4 |
||
squirrelmail s mime plugin 0.5 |