[WEB SECURITY] SquirrelMail Server Compromised, Sourcecode Modified

bugtraq at cgisecurity.net bugtraq at cgisecurity.net
Mon Dec 17 18:06:58 EST 2007


The popular product squirrelmail has had a backdoor inserted into it.

"These changes would allow a remote user the ability to execute exploit code on a victim 
machine, without any user interaction on the victim's server. This could grant the attacker 
the ability to deploy further code on the victim's server. "

More Information:
http://www.squirrelmail.org/

SquirrelMail Server Compromised, Sourcecode Modified
http://www.cgisecurity.com/2007/12/13


Regards,
- Robert
http://www.cgisecurity.com/ Website Security news and more
http://www.webappsec.org/


----------------------------------------------------------------------------
Join us on IRC: irc.freenode.net #webappsec

Have a question? Search The Web Security Mailing List Archives: 
http://www.webappsec.org/lists/websecurity/

Subscribe via RSS: 
http://www.webappsec.org/rss/websecurity.rss [RSS Feed]



More information about the websecurity mailing list