Back
CVE-2005-0152
PHP remote file inclusion vulnerability in Squirrelmail 1.2.6 allows remote attackers to execute arbitrary code via "URL manipulation."
Published: Feb 2, 2005
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| squirrelmail | squirrelmail | 1.2.6 |
GitHub Security Advisory GHSA-c8rj-rc4g-57v5
PHP remote file inclusion vulnerability in Squirrelmail 1.2.6 allows remote attackers to execute...
References (8)
- http://ftp.debian.org/debian/dists/stable-proposed-updates/squirrelmail_1.2.6-2_i386.changes
- http://secunia.com/advisories/14096 Patch, Vendor Advisory
- http://www.debian.org/security/2005/dsa-662 Patch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/203214 Patch, Third Party Advisory, US Government Resource
- http://ftp.debian.org/debian/dists/stable-proposed-updates/squirrelmail_1.2.6-2_i386.changes
- http://secunia.com/advisories/14096 Patch, Vendor Advisory
- http://www.debian.org/security/2005/dsa-662 Patch, Vendor Advisory
- http://www.kb.cert.org/vuls/id/203214 Patch, Third Party Advisory, US Government Resource
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
3.61%
Top 11% most likely to be exploited
Threat Score
31.1 / 100
Data Sources
NVD
EPSS
GitHub