4.3
CVSSv2

CVE-2002-1526

Published: 02/04/2003 Updated: 05/09/2008
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in emumail.cgi for EMU Webmail 5.0 allows remote malicious users to inject arbitrary HTML or script via the email address field.

Vulnerable Product Search on Vulmon Subscribe to Product

emumail emu webmail 5.0

Exploits

source: wwwsecurityfocuscom/bid/5824/info Emumail is an open source web mail application It is available for the Unix, Linux, and Microsoft Windows operating systems It has been reported that EmuMail does not properly sanitize input Under some conditions, it is possible to pass an email containing script or html code through the EmuMa ...