CVE-2007-6348

Impact:
Critical
Public Date:
2007-12-13
Bugzilla:
425291: CVE-2007-6348 Squirrelmail compromise

The MITRE CVE dictionary describes this issue as:

SquirrelMail 1.4.11 and 1.4.12, as distributed on sourceforge.net before 20071213, has been externally modified to create a Trojan Horse that introduces a PHP remote file inclusion vulnerability, which allows remote attackers to execute arbitrary code.

Find out more about CVE-2007-6348 from the MITRE CVE dictionary dictionary and NIST NVD.

Statement

The versions of SquirrelMail packages shipped in Red Hat Enterprise Linux 3, 4, and 5 were not affected by this issue. In addition, the Red Hat Security Response Team have verified that the malicious code is not part of released Red Hat Enterprise Linux squirrelmail packages.

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.