BugTraq
Remote Execution of Commands in Omail Webmail 0.98.4 and earlier Aug 19 2003 07:15PM
Phillip Whelan (pwhelan bunkerchile net) (1 replies)
Re: Remote Execution of Commands in Omail Webmail 0.98.4 and earlier Aug 21 2003 09:24AM
Olivier M. (qmail orion 8304 ch)
On Tue, Aug 19, 2003 at 07:15:32PM -0000, Phillip Whelan wrote:
> Product: Omail Webmail
> The flaw occurs in the function checklogin();

thx, version 0.98.5 released today, including your bugfix:
http://prdownloads.sourceforge.net/omail/omail-webmail-0.98.5.tar.gz

> The author was contacted two weeks ago, but did not
> respond.

summertime -> ever heard of holidays... ? :)

regards,
Olivier
--
_________________________________________________________________
Olivier Mueller - om (at) 8304 (dot) ch [email concealed] - PGPkeyID: 0E84D2EA - Switzerland
qmail projects: http://omail.omnis.ch - http://webmail.omnis.ch

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus