SquirrelMail IMAP/SMTP Command Injection Vulnerabilities
Publish Date: 21 de июля de 2015
Severity: : Medium
Advisory Date: 21 de июля de 2015
DESCRIPTION
SquirrelMail is susceptible to IMAP/SMTP command injection vulnerabilities, due to the application's failure to properly sanitize user-supplied input. An attacker may leverage this issue to execute arbitrary IMAP/SMTP commands on the configured IMAP/SMTP server by sending a crafted request packet.
INFORMATION EXPOSURE
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1000208