Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
IMP 2.x SQL injection vulnerabilities Jan 08 2003 05:34PM
Jouko Pynnonen (jouko solutions fi)


IMP is a popular webmail package written in PHP. It ships with some UNIX
systems and is also used on Windows servers. The version 2 of the program
contains some SQL injection flaws which allow any remote user to access
the webmail system's database. Valid user authentication is not required
in...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus