4.3
CVSSv2

CVE-2005-1769

Published: 16/06/2005 Updated: 11/10/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.0 up to and including 1.4.4 allow remote malicious users to inject arbitrary web script or HTML via unknown attack vectors in (1) the URL or (2) an e-mail message.

Vulnerable Product Search on Vulmon Subscribe to Product

squirrelmail squirrelmail 1.4.3_rc1

squirrelmail squirrelmail 1.4.3a

squirrelmail squirrelmail 1.44

squirrelmail squirrelmail 1.4.1

squirrelmail squirrelmail 1.4.2

squirrelmail squirrelmail 1.4.3

Vendor Advisories

Synopsis squirrelmail security update Type/Severity Security Advisory: Moderate Topic An updated squirrelmail package that fixes two security issues is nowavailableThis update has been rated as having moderate security impact by the RedHat Security Response Team[Updated 04 Aug 2005]The previous SquirrelMa ...