Vulnerabilities (CVE)

Filtered by vendor Courier-mta Subscribe
Filtered by product Courtier-authlib
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-2667 2 Courier-mta, Suse 2 Courtier-authlib, Open Suse 2024-11-21 5.1 MEDIUM N/A
SQL injection vulnerability in the Courier Authentication Library (aka courier-authlib) before 0.60.6 on SUSE openSUSE 10.3 and 11.0, and other platforms, when MySQL and a non-Latin character set are used, allows remote attackers to execute arbitrary SQL commands via the username and unspecified other vectors.
CVE-2008-2380 1 Courier-mta 1 Courtier-authlib 2024-11-21 5.1 MEDIUM N/A
SQL injection vulnerability in authpgsqllib.c in Courier-Authlib before 0.62.0, when a non-Latin locale Postgres database is used, allows remote attackers to execute arbitrary SQL commands via query parameters containing apostrophes.