Cross-site scripting vulnerability in message.php for AeroMail prior to 1.45 allows remote malicious users to execute Javascript as an AeroMail user via an email message with the script in the Subject line.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
aeromail aeromail 1.10 |
||
aeromail aeromail 1.20 |
||
aeromail aeromail 1.26 |
||
aeromail aeromail 1.30 |
||
aeromail aeromail 1.02 |
||
aeromail aeromail 1.40 |