CVE Vulnerabilities

CVE-2006-4019

Published: Aug 11, 2006 | Modified: Oct 17, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Dynamic variable evaluation vulnerability in compose.php in SquirrelMail 1.4.0 to 1.4.7 allows remote attackers to overwrite arbitrary program variables and read or write the attachments and preferences of other users.

Affected Software

Name Vendor Start Version End Version
Squirrelmail Squirrelmail 1.4.0 (including) 1.4.0 (including)
Squirrelmail Squirrelmail 1.4.1 (including) 1.4.1 (including)
Squirrelmail Squirrelmail 1.4.2 (including) 1.4.2 (including)
Squirrelmail Squirrelmail 1.4.3 (including) 1.4.3 (including)
Squirrelmail Squirrelmail 1.4.3_r3 (including) 1.4.3_r3 (including)
Squirrelmail Squirrelmail 1.4.3_rc1 (including) 1.4.3_rc1 (including)
Squirrelmail Squirrelmail 1.4.3a (including) 1.4.3a (including)
Squirrelmail Squirrelmail 1.4.4 (including) 1.4.4 (including)
Squirrelmail Squirrelmail 1.4.4_rc1 (including) 1.4.4_rc1 (including)
Squirrelmail Squirrelmail 1.4.5 (including) 1.4.5 (including)
Squirrelmail Squirrelmail 1.4.6 (including) 1.4.6 (including)
Squirrelmail Squirrelmail 1.4.6_rc1 (including) 1.4.6_rc1 (including)
Squirrelmail Squirrelmail 1.4.7 (including) 1.4.7 (including)
Squirrelmail Squirrelmail 1.4_rc1 (including) 1.4_rc1 (including)
Squirrelmail Squirrelmail 1.44 (including) 1.44 (including)

References