Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SquirrelMail 1.4.6 and earlier, with register_globals enabled, allows remote attackers to hijack cookies in src/redirect.php via unknown vectors. NOTE: while "cookie theft" is frequently associated with XSS, the vendor disclosure is too vague to be certain of this.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SquirrelMail 'register_globals'未知劫持COOKIES漏洞
Vulnerability Description
SquirrelMail 1.4.6和更早版本register_globals启用时候,允许远程攻击者在redirect.php利用未知向量劫持COOKIES.
CVSS Information
N/A
Vulnerability Type
N/A