CVE-2011-2752

CRLF injection vulnerability in SquirrelMail 1.4.21 and earlier allows remote attackers to modify or add preference values via a \n (newline) character, a different vulnerability than CVE-2010-4555.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
5.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 63%
VendorProductVersion
squirrelmailsquirrelmail
𝑥
≤ 1.4.21
squirrelmailsquirrelmail
0.1
squirrelmailsquirrelmail
0.1.1
squirrelmailsquirrelmail
0.1.2
squirrelmailsquirrelmail
0.2
squirrelmailsquirrelmail
0.2.1
squirrelmailsquirrelmail
0.3
squirrelmailsquirrelmail
0.3.1
squirrelmailsquirrelmail
0.3pre1:pre1
squirrelmailsquirrelmail
0.3pre2:pre2
squirrelmailsquirrelmail
0.4
squirrelmailsquirrelmail
0.4pre1:pre1
squirrelmailsquirrelmail
0.4pre2:pre2
squirrelmailsquirrelmail
0.5
squirrelmailsquirrelmail
0.5pre1:pre1
squirrelmailsquirrelmail
0.5pre2:pre2
squirrelmailsquirrelmail
1.0
squirrelmailsquirrelmail
1.0.1
squirrelmailsquirrelmail
1.0.2
squirrelmailsquirrelmail
1.0.3
squirrelmailsquirrelmail
1.0.4
squirrelmailsquirrelmail
1.0.5
squirrelmailsquirrelmail
1.0.6
squirrelmailsquirrelmail
1.0pre1:pre1
squirrelmailsquirrelmail
1.0pre2:pre2
squirrelmailsquirrelmail
1.0pre3:pre3
squirrelmailsquirrelmail
1.1.0
squirrelmailsquirrelmail
1.1.1
squirrelmailsquirrelmail
1.1.2
squirrelmailsquirrelmail
1.1.3
squirrelmailsquirrelmail
1.2
squirrelmailsquirrelmail
1.2.0
squirrelmailsquirrelmail
1.2.0:rc3
squirrelmailsquirrelmail
1.2.1
squirrelmailsquirrelmail
1.2.2
squirrelmailsquirrelmail
1.2.3
squirrelmailsquirrelmail
1.2.4
squirrelmailsquirrelmail
1.2.5
squirrelmailsquirrelmail
1.2.6
squirrelmailsquirrelmail
1.2.6:rc1
squirrelmailsquirrelmail
1.2.7
squirrelmailsquirrelmail
1.2.8
squirrelmailsquirrelmail
1.2.9
squirrelmailsquirrelmail
1.2.10
squirrelmailsquirrelmail
1.2.11
squirrelmailsquirrelmail
1.3.0
squirrelmailsquirrelmail
1.3.1
squirrelmailsquirrelmail
1.3.2
squirrelmailsquirrelmail
1.4
squirrelmailsquirrelmail
1.4:rc1
squirrelmailsquirrelmail
1.4.0
squirrelmailsquirrelmail
1.4.0:rc1
squirrelmailsquirrelmail
1.4.0:rc2a
squirrelmailsquirrelmail
1.4.0-r1
squirrelmailsquirrelmail
1.4.1
squirrelmailsquirrelmail
1.4.2
squirrelmailsquirrelmail
1.4.2-r1
squirrelmailsquirrelmail
1.4.2-r2
squirrelmailsquirrelmail
1.4.2-r3
squirrelmailsquirrelmail
1.4.2-r4
squirrelmailsquirrelmail
1.4.2-r5
squirrelmailsquirrelmail
1.4.3
squirrelmailsquirrelmail
1.4.3:r3
squirrelmailsquirrelmail
1.4.3:rc1
squirrelmailsquirrelmail
1.4.3a:a
squirrelmailsquirrelmail
1.4.3aa:aa
squirrelmailsquirrelmail
1.4.4
squirrelmailsquirrelmail
1.4.4:rc1
squirrelmailsquirrelmail
1.4.5
squirrelmailsquirrelmail
1.4.5:rc1
squirrelmailsquirrelmail
1.4.6
squirrelmailsquirrelmail
1.4.6:rc1
squirrelmailsquirrelmail
1.4.6_cvs:_cvs
squirrelmailsquirrelmail
1.4.7
squirrelmailsquirrelmail
1.4.8
squirrelmailsquirrelmail
1.4.8.4fc6:fc6
squirrelmailsquirrelmail
1.4.9
squirrelmailsquirrelmail
1.4.9a:a
squirrelmailsquirrelmail
1.4.10
squirrelmailsquirrelmail
1.4.10a:a
squirrelmailsquirrelmail
1.4.11
squirrelmailsquirrelmail
1.4.12
squirrelmailsquirrelmail
1.4.13
squirrelmailsquirrelmail
1.4.15
squirrelmailsquirrelmail
1.4.15:rc1
squirrelmailsquirrelmail
1.4.15rc1:rc1
squirrelmailsquirrelmail
1.4.16
squirrelmailsquirrelmail
1.4.17
squirrelmailsquirrelmail
1.4.18
squirrelmailsquirrelmail
1.4.19
squirrelmailsquirrelmail
1.4.20
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
squirrelmail
yakkety
not-affected
xenial
not-affected
wily
ignored
vivid
ignored
utopic
ignored
trusty
not-affected
saucy
ignored
raring
ignored
quantal
ignored
precise
not-affected
oneiric
ignored
natty
ignored
maverick
ignored
lucid
ignored
hardy
ignored