Computer Security
[EN] securityvulns.ru
no-pyccku



Multiple Webmail systems crossite scripting
updated since 31.05.2004
Published:06.07.2004
Source:FULL-DISCLOSURE
SecurityVulns ID:3720
Type:remote
Level:5/10
Description:Crossite scripting via Content-Type.
Affected:SQUIRRELMAIL : SquirrelMail 1.5
 SQUIRRELMAIL : Squirrelmail 1.4
 OPENWEBMAIL : Openwebmail 2.32
 SQWEBMAIL : Sqwebmail 4.0
 HORDE : IMP 3.2
 ILOHAMAIL : IlohaMail 0.8
Original documentdocumentRoman Medina, [Full-Disclosure] RS-2004-2: "Content-Type" XSS vulnerability affecting other webmail systems (06.07.2004)
 documentA. Ramos, [openwebmail] Fw: Re: XSS bug. (05.06.2004)
 documentRoman Medina, SquirrelMail "Content-Type" XSS vulnerability (31.05.2004)
 documentRoman Medina, [Full-Disclosure] RS-2004-1: SquirrelMail "Content-Type" XSS vulnerability (31.05.2004)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru