Nessus Plugin #14379

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

Multiple Vulnerabilities in Merak Webmail / IceWarp Web Mail

Family:
CGI abuses
Category:
infos
Copyright:
This script is Copyright (C) 2004 George A. Theall
Summary:
Checks for Multiple Vulnerabilities in Merak Webmail / IceWarp Web Mail
Version:
$Revision: 1.3 $
Cve_id:
-
Bugtraq_id:
10966
Xrefs:
OSVDB:9037, OSVDB:9038, OSVDB:9039, OSVDB:9040, OSVDB:9041, OSVDB:9042, OSVDB:9043, OSVDB:9044, OSVDB:9045
Description:

The target is running at least one instance of Merak Webmail / IceWarp
Web Mail 5.2.7 or less or Merak Mail Server 7.5.2 or less -
<http://www.MerakMailServer.com/>. This product is subject to
multiple XSS, HTML and SQL injection, and PHP source code disclosure
vulnerabilities.

Solution : Upgrade to Merak Webmail / IceWarp Web Mail 5.2.8 or
Merak Mail Server 7.5.2 or later.

Risk factor : Medium
Generiert am 27.04.2005 um 18:49:54 Uhr.