Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote malicious user to execute code via the LOWSRC or DYNRC parameters in the IMG tag.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
microsoft hotmail |