SquirrelMail 1.4.11 and 1.4.12, as distributed on sourceforge.net prior to 20071213, has been externally modified to create a Trojan Horse that introduces a PHP remote file inclusion vulnerability, which allows remote malicious users to execute arbitrary code.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
squirrelmail squirrelmail 1.4.11 |
||
squirrelmail squirrelmail 1.4.12 |