Unrated severityNVD Advisory· Published Jul 10, 2007· Updated Apr 23, 2026
CVE-2007-3634
CVE-2007-3634
Description
Unspecified vulnerability in the G/PGP (GPG) Plugin 2.0 for Squirrelmail 1.4.10a allows remote authenticated users to execute arbitrary commands via unspecified vectors, possibly related to the passphrase variable in the gpg_sign_attachment function, aka ZD-00000004. this information is based upon a vague advisory by a vulnerability information sales organization that does not coordinate with vendors or release actionable advisories. A CVE has been assigned for tracking purposes, but duplicates with other CVEs are difficult to determine.
Affected products
1- cpe:2.3:a:squirrelmail:gpg_plugin:2.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- www.securityfocus.com/bid/24782nvdPatch
- lists.immunitysec.com/pipermail/dailydave/2007-July/004448.htmlnvd
- lists.immunitysec.com/pipermail/dailydave/2007-July/004452.htmlnvd
- lists.immunitysec.com/pipermail/dailydave/2007-July/004453.htmlnvd
- osvdb.org/45788nvd
- www.attrition.org/pipermail/vim/2007-July/001703.htmlnvd
- www.wslabi.com/wabisabilabi/initPublishedBid.donvd
News mentions
0No linked articles in our index yet.