openSUSE 10 Security Update : squirrelmail (squirrelmail-6242)
Medium Nessus Plugin ID 38776
SynopsisThe remote openSUSE host is missing a security update.
DescriptionMultiple vulnerabilities have been fixed in SquirrelMail: an XSS and input sanitization bug (both CVE-2009-1578), a server-side code execution (CVE-2009-1579), a login session hijacking bug (CVE-2009-1580) and another bug that allowed phishing and XSS attacks (CVE-2009-1581).
SolutionUpdate the affected squirrelmail package.