SquirrelMail IMAP/SMTP Command Injection Vulnerabilities
Publish Date: 21 juillet 2015
Gravité: : Medium
Date du conseil: 21 juillet 2015
Description
SquirrelMail is susceptible to IMAP/SMTP command injection vulnerabilities, due to the application's failure to properly sanitize user-supplied input. An attacker may leverage this issue to execute arbitrary IMAP/SMTP commands on the configured IMAP/SMTP server by sending a crafted request packet.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1000208