Vulnerability   
Search   
    Search 202850 CVE descriptions
and 87302 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.11416
Category:CGI abuses
Title:openwebmail command execution
Summary:NOSUMMARY
Description:Description:

The remote host is running an old version of OpenWebMail
which allows users to execute arbitrary commands on
the remote host with the superuser permissions. It also
has user name information disclosure problem.

Solution : Upgrade to OpenWebMail 1.90 or newer
Risk factor : High

Cross-Ref: BugTraq ID: 6232
BugTraq ID: 6425
Common Vulnerability Exposure (CVE) ID: CVE-2002-1385
http://www.securityfocus.com/bid/6425
Bugtraq: 20021218 Openwebmail 1.71 remote root compromise (Google Search)
http://marc.info/?l=bugtraq&m=104031696120743&w=2
Bugtraq: 20021219 [Fix] Openwebmail 1.71 remote root compromise (Google Search)
http://marc.info/?l=bugtraq&m=104032263328026&w=2
XForce ISS Database: open-webmail-command-execution(10904)
https://exchange.xforce.ibmcloud.com/vulnerabilities/10904
CopyrightThis script is Copyright (C) 2003 Renaud Deraison

This is only one of 87302 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2021 E-Soft Inc. All rights reserved.