debian · CVE-2012-0811

Quick triage

Priority: not yet assigned 公開: Updated: Sun, 19 Jul 2026 12:01:35 GMT

参照: Official debian advisory, NVD, CVE.org · CVE 詳細

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2012-0811 not yet assigned priority: Debian including 1 source packages (postfixadmin), 4 status rows across 4 suites (bookworm, forky, sid, trixie): resolved 4.

Description:

Multiple SQL injection vulnerabilities in Postfix Admin (aka postfixadmin) before 2.3.5 allow remote authenticated users to execute arbitrary SQL commands via (1) the pw parameter to the pacrypt function, when mysql_encrypt is configured, or (2) unspecified vectors that are used in backup files generated by backup.php.

cvelogic Threat Intelligence