Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.58543
Kategorie:Gentoo Local Security Checks
Titel:Gentoo Security Advisory GLSA 200708-08 (squirrelmail)
Zusammenfassung:The remote host is missing updates announced in;advisory GLSA 200708-08.
Beschreibung:Summary:
The remote host is missing updates announced in
advisory GLSA 200708-08.

Vulnerability Insight:
Multiple vulnerabilities have been discovered in SquirrelMail, allowing for
the remote execution of arbitrary code.

Solution:
All SquirrelMail users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose '>=mail-client/squirrelmail-1.4.10a-r2'

CVSS Score:
9.3

CVSS Vector:
AV:N/AC:M/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2005-1924
BugTraq ID: 24874
http://www.securityfocus.com/bid/24874
Bugtraq: 20070711 SquirrelMail G/PGP Encryption Plug-in Remote Command Execution Vulnerability (Google Search)
http://www.securityfocus.com/archive/1/473370/100/0/threaded
https://www.exploit-db.com/exploits/4173
http://security.gentoo.org/glsa/glsa-200708-08.xml
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=329
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=331
http://osvdb.org/37923
http://osvdb.org/37924
http://secunia.com/advisories/26035
http://secunia.com/advisories/26424
http://www.attrition.org/pipermail/vim/2007-July/001710.html
http://www.vupen.com/english/advisories/2007/2513
XForce ISS Database: squirrelmail-gpgp-keyfunc-command-execution(35364)
https://exchange.xforce.ibmcloud.com/vulnerabilities/35364
XForce ISS Database: squirrelmail-gpgp-keyring-command-execution(35355)
https://exchange.xforce.ibmcloud.com/vulnerabilities/35355
Common Vulnerability Exposure (CVE) ID: CVE-2006-4169
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=555
http://osvdb.org/37932
http://osvdb.org/37933
XForce ISS Database: squirrelmail-gpgp-help-file-include(35362)
https://exchange.xforce.ibmcloud.com/vulnerabilities/35362
CopyrightCopyright (C) 2008 E-Soft Inc.

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.