Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Hastymail IMAP SMTP Command Injection Vulnerability

Hastymail is prone to an IMAP / SMTP command-injection vulnerability because it fails to sufficiently sanitize user-supplied input.

An authenticated malicious user could execute arbitrary IMAP / SMTP commands on the affected mail server processes. This may allow the user to send SPAM from the server or to exploit latent vulnerabilities in the underlying system.

Hastymail 1.5 and prior versions are affected.







 

Privacy Statement
Copyright 2009, SecurityFocus