VYPR
Unrated severityNVD Advisory· Published Jun 2, 2005· Updated Apr 16, 2026

CVE-2005-1824

CVE-2005-1824

Description

The sql_escape_string function in auth/sql.c for the mailutils SQL authentication module does not properly quote the "\" (backslash) character, which is used as an escape character and makes the module vulnerable to SQL injection attacks.

Affected products

1
  • cpe:2.3:a:gnu:mailutils:1.0.6.1.1:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.