CVE-2011-4542 Information

Description

Hastymail2 2.1.1 before RC2 allows remote attackers to execute arbitrary commands via the (1) rs or (2) rsargs[] parameter in a mailbox Drafts action to the default URI.

Reference

http://secunia.com/advisories/48308 https://www.dognaedis.com/vulns/DGS-SEC-3.html

Share on: