Security Advisory
CVE-2003-1523
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
SQL injection vulnerability in the IMAP daemon in dbmail 1.1 allows remote attackers to execute arbitrary SQL commands via the (1) login username, (2) mailbox name, and possibly other attack vectors.