Roundcube Webmail Information Disclosure Vulnerability
BID:53453
Info
Roundcube Webmail Information Disclosure Vulnerability
| Bugtraq ID: | 53453 |
| Class: | Unknown |
| CVE: |
CVE-2011-1491 |
| Remote: | Yes |
| Local: | No |
| Published: | Apr 07 2011 12:00AM |
| Updated: | Apr 13 2015 09:35PM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Roundcube Round Cube Webmail 0.3.1 Roundcube Round Cube Webmail 0.2.2 Roundcube Round Cube Webmail 0.5 MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 |
| Not Vulnerable: |
Roundcube Round Cube Webmail 0.5.1 |
Discussion
Roundcube Webmail Information Disclosure Vulnerability
Roundcube Webmail is prone to an information-disclosure vulnerability.
A remote attacker may obtain sensitive information that may aid in further attacks.
Roundcube Webmail is prone to an information-disclosure vulnerability.
A remote attacker may obtain sensitive information that may aid in further attacks.
Solution / Fix
Roundcube Webmail Information Disclosure Vulnerability
Solution:
Updates are available. Please see the references for details.
MandrakeSoft Enterprise Server 5 x86_64
MandrakeSoft Enterprise Server 5
Solution:
Updates are available. Please see the references for details.
MandrakeSoft Enterprise Server 5 x86_64
-
Mandriva roundcubemail-0.7.2-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/
MandrakeSoft Enterprise Server 5
-
Mandriva roundcubemail-0.7.2-0.1mdvmes5.2.noarch.rpm
http://www.mandriva.com/en/downloads/
References
Roundcube Webmail Information Disclosure Vulnerability
References:
References:
- Bug 690456 - (CVE-2011-1491, CVE-2011-1492) CVE-2011-1491 CVE-2011-1492 roundcub (Red Hat Bugzilla)
- RoundCube Webmail Changelog (RoundCube)
- Vendor Homepage (RoundCube Project)