Description
SQL injection vulnerability in the PostgreSQL auth module for courier 0.40 and earlier allows remote attackers to execute SQL code via the user name.
Affected products
- double_precision_incorporated / courier_mta0.37.3 – 0.37.3
- inter7 / courier-imap1.6 – 1.6