Vulnerabilities > Squirrelmail > GPG Plugin > 1.1

DATE CVE VULNERABILITY TITLE RISK
2004-01-20 CVE-2003-0990 Remote Command Execution vulnerability in Squirrelmail G/PGP Encryption Plugin
The parseAddress code in (1) SquirrelMail 1.4.0 and (2) GPG Plugin 1.1 allows remote attackers to execute commands via shell metacharacters in the "To:" field.
network
low complexity
squirrelmail
7.5