Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-3665

Опубликовано: 18 июл. 2006
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3

Описание

SquirrelMail 1.4.6 and earlier, with register_globals enabled, allows remote attackers to hijack cookies in src/redirect.php via unknown vectors. NOTE: while "cookie theft" is frequently associated with XSS, the vendor disclosure is too vague to be certain of this.

РелизСтатусПримечание
dapper

ignored

end of life
devel

released

2:1.4.7-1
edgy

released

2:1.4.7-1
feisty

released

2:1.4.7-1
gutsy

released

2:1.4.7-1
hardy

released

2:1.4.7-1
intrepid

released

2:1.4.7-1
jaunty

released

2:1.4.7-1
karmic

released

2:1.4.7-1
upstream

needs-triage

Показывать по

Ссылки на источники

4.3 Medium

CVSS2

Связанные уязвимости

nvd
около 19 лет назад

SquirrelMail 1.4.6 and earlier, with register_globals enabled, allows remote attackers to hijack cookies in src/redirect.php via unknown vectors. NOTE: while "cookie theft" is frequently associated with XSS, the vendor disclosure is too vague to be certain of this.

debian
около 19 лет назад

SquirrelMail 1.4.6 and earlier, with register_globals enabled, allows ...

github
больше 3 лет назад

SquirrelMail 1.4.6 and earlier, with register_globals enabled, allows remote attackers to hijack cookies in src/redirect.php via unknown vectors. NOTE: while "cookie theft" is frequently associated with XSS, the vendor disclosure is too vague to be certain of this.

4.3 Medium

CVSS2