Debian Security Update DSA-4181 roundcube - security update

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,810
Reaction score
74
Credits
-1,257
Andrea Basile discovered that the archive plugin in roundcube, a skinnable AJAX based webmail solution for IMAP servers, does not properly sanitize a user-controlled parameter, allowing a remote attacker to inject arbitrary IMAP commands and perform malicious actions.

Continue reading...
 


Follow Linux.org

Members online


Top