SQL injection vulnerability in (1) fdelmail.asp, (2) addressc.asp, and possibly (3) postmail.asp and (4) fmvmail.asp in CMailServer 5.2 allow remote attackers to inject arbitrary SQL commands and delete mail metadata or e-mail addresses of contacts via the indexOfMail parameter.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2004-12-05T05:00:00
Updated: 2024-08-08T00:39:00.864Z
Reserved: 2004-12-02T00:00:00
Link: CVE-2004-1129
Vulnrichment
No data.
NVD
Status : Modified
Published: 2005-01-10T05:00:00.000
Modified: 2024-11-20T23:50:10.633
Link: CVE-2004-1129
Redhat
No data.