|
Vulnerability Assessment & Network Security Forums |
|||||||||
If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important. If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery. Home >> Browse Vulnerability Assessment Database >> Red Hat Local Security Checks >> RHSA-2005-595: squirrelmail Vulnerability Assessment Details
|
RHSA-2005-595: squirrelmail |
||
Check for the version of the squirrelmail packages Detailed Explanation for this Vulnerability Assessment An updated squirrelmail package that fixes two security issues is now available. This update has been rated as having moderate security impact by the Red Hat Security Response Team. SquirrelMail is a standards-based webmail package written in PHP4. A bug was found in the way SquirrelMail handled the $_POST variable. A user's SquirrelMail preferences could be read or modified if the user is tricked into visiting a malicious URL. The Common Vulnerabilities and Exposures project assigned the name CVE-2005-2095 to this issue. Several cross-site scripting bugs were discovered in SquirrelMail. An attacker could inject arbitrary Javascript or HTML content into SquirrelMail pages by tricking a user into visiting a carefully crafted URL, or by sending them a carefully constructed HTML email message. (CVE-2005-1769) All users of SquirrelMail should upgrade to this updated package, which contains backported patches that resolve these issues. Solution : http://rhn.redhat.com/errata/RHSA-2005-595.html Network Security Threat Level: High Networks Security ID: Vulnerability Assessment Copyright: This script is Copyright (C) 2005 Tenable Network Security |
||
Cables, Connectors |
Atari 1200XL Computer with Power Supply and BASIC - Tested 100% Working
$325.00
Atari 1050 5.25" Floppy Disk Drive w/ CO17945 Power Adaptor - Powers On
$49.99
Atari 130xe Computer Case (no keyboard, no motheboard)
$40.00
Atari 400/800/XL/XE Computer SIO2PC - PC/Mac Disk Drive Emulator Adapter/Device
$15.25
Vintage Atari 400 Computer System w/ Atari 410 Program Recorder
$100.00
Atari 1090XL Reproduction Main Board with two cards.
$249.42
Lot of Atari 400 & 800XL Computers, 1050 Floppy Disk Drive, Joysticks, & Games
$350.00
Atari 600XL Computer, Pwr Supply & Video Cable, Tested & Working
$150.00
A8picoCart Atari 130 / 65 XE 800 / 1200 XL XEGS multicart UnoCart clone game
$32.95
Atari 800xl E X C E L L E N T condition. Atarimax with Games
$250.00
|
||
No Discussions have been posted on this vulnerability. |