Description
Multiple buffer overflows in the DBMail driver in the Password plugin in Roundcube before 1.1.0 allow remote attackers to have unspecified impact via the (1) password or (2) username.
Remediation
References
Related Vulnerabilities
Drupal Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-9449)
WordPress Plugin Waitlist Woocommerce (Back in stock notifier) Cross-Site Request Forgery (2.5.1)
WordPress Plugin Verve Meta Boxes TimThumb Arbitrary File Upload (1.2.8)
Apache Tomcat Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-1582)