The SquirrelMail Vacation plugin is prone to an input validation vulnerability. This issue exists in the 'ftpfile' binary, which is installed with setuid root privileges. It is reported that 'ftpfile' may allow local attackers to execute commands or read files with superuser privileges.
The SquirrelMail Vacation plugin is prone to an input validation vulnerability. This issue exists in the 'ftpfile' binary, which is installed with setuid root privileges. It is reported that 'ftpfile' may allow local attackers to execute commands or read files with superuser privileges.