SQL injection vulnerability in (1) fdelmail.asp, (2) addressc.asp, and possibly (3) postmail.asp and (4) fmvmail.asp in CMailServer 5.2 allow remote attackers to inject arbitrary SQL commands and delete mail metadata or e-mail addresses of contacts via the indexOfMail parameter.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2004-12-05T05:00:00
Updated: 2017-07-10T14:57:01
Reserved: 2004-12-02T00:00:00
Link: CVE-2004-1129
JSON object: View
NVD Information
Status : Modified
Published: 2005-01-10T05:00:00.000
Modified: 2017-07-11T01:30:45.980
Link: CVE-2004-1129
JSON object: View
Redhat Information
No data.
CWE