SquirrelMail IMAP/SMTP Command Injection Vulnerabilities

  Severity: MEDIUM
  Advisory Date: JUL 21, 2015

  DESCRIPTION

SquirrelMail is susceptible to IMAP/SMTP command injection vulnerabilities, due to the application's failure to properly sanitize user-supplied input. An attacker may leverage this issue to execute arbitrary IMAP/SMTP commands on the configured IMAP/SMTP server by sending a crafted request packet.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1000208