Lucene search

K
ubuntucveUbuntu.comUB:CVE-2006-4019
HistoryAug 11, 2006 - 12:00 a.m.

CVE-2006-4019

2006-08-1100:00:00
ubuntu.com
ubuntu.com
11

6.4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

0.277 Low

EPSS

Percentile

96.8%

Dynamic variable evaluation vulnerability in compose.php in SquirrelMail
1.4.0 to 1.4.7 allows remote attackers to overwrite arbitrary program
variables and read or write the attachments and preferences of other users.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchsquirrelmail< 1.4.6-1ubuntu0.1UNKNOWN
ubuntu6.10noarchsquirrelmail< 1.4.8-1ubuntu0.1UNKNOWN
ubuntu7.04noarchsquirrelmail< 1.4.9a-1ubuntu0.1UNKNOWN

6.4 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:P/I:P/A:N

0.277 Low

EPSS

Percentile

96.8%