4.3
CVSSv2

CVE-2002-2086

Published: 31/12/2002 Updated: 11/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in magicHTML of SquirrelMail prior to 1.2.6 allow remote malicious users to inject arbitrary web script or HTML via (1) "<<script" in unspecified input fields or (2) a javascript: URL in the src attribute of an IMG tag.

Vulnerable Product Search on Vulmon Subscribe to Product

squirrelmail squirrelmail 1.2.3

squirrelmail squirrelmail 1.2.4

squirrelmail squirrelmail 1.2.5

squirrelmail squirrelmail 1.2.0

squirrelmail squirrelmail 1.2.1

squirrelmail squirrelmail 1.2.2

Github Repositories

the-game-changer The game changer is a fun and hobby project to collaborate between the builders and breakers Technically, the secure world does not magically come to existence until you attempt to build one Vision: Gradually, securing all the interconnected devices in the world The aim is to help the breakers (security researchers) and builders (developers) of the world to