4.3
CVSSv2

CVE-2005-3692

Published: 19/11/2005 Updated: 08/03/2011
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in AMAX Magic Winmail Server 4.2 (build 0824) and previous versions allows remote malicious users to inject arbitrary web script or HTML via the (1) retid parameter in badlogin.php, (2) Content-Type headers in HTML mails, and (3) HTML mail attachments.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

amax information technologies magic winmail server 4.2

Exploits

Winmail Server version 42 suffers from a cross site scripting vulnerability ...