PT-2007-4890 · Squirrelmail · Squirrelmail+1

Brian G. Peterson

·

Published

2007-07-10

·

Updated

2008-11-15

·

CVE-2007-3635

CVSS v2.0

4.3

Medium

VectorAV:L/AC:L/Au:S/C:P/I:P/A:P
Multiple unspecified vulnerabilities in the G/PGP (GPG) Plugin before 2.1 for Squirrelmail might allow "local authenticated users" to inject certain commands via unspecified vectors. NOTE: this might overlap CVE-2005-1924, CVE-2006-4169, or CVE-2007-3634.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2007-3635

Affected Products

Squirrelmail
Gpg Plugin