roundcube -- remote execution of arbitrary code

Affected packages
roundcube < 0.2.b2,1


VuXML ID 8f483746-d45d-11dd-84ec-001fc66e7203
Discovery 2008-12-12
Entry 2008-12-30

Entry for CVE-2008-5619 says:

html2text.php in RoundCube Webmail (roundcubemail) 0.2-1.alpha and 0.2-3.beta allows remote attackers to execute arbitrary code via crafted input that is processed by the preg_replace function with the eval switch.


CVE Name CVE-2008-5619