4.3
CVSSv2

CVE-2008-2379

Published: 05/12/2008 Updated: 29/09/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in SquirrelMail prior to 1.4.17 allows remote malicious users to inject arbitrary web script or HTML via a crafted hyperlink in an HTML part of an e-mail message.

Vulnerable Product Search on Vulmon Subscribe to Product

squirrelmail squirrelmail 1.3.1

squirrelmail squirrelmail 1.4.2

squirrelmail squirrelmail 0.4

squirrelmail squirrelmail 1.4.5 rc1

squirrelmail squirrelmail 1.0.6

squirrelmail squirrelmail 1.0.5

squirrelmail squirrelmail 0.3

squirrelmail squirrelmail 0.4pre2

squirrelmail squirrelmail 1.1.0

squirrelmail squirrelmail 1.4.6 rc1

squirrelmail squirrelmail 1.0pre2

squirrelmail squirrelmail 0.3.1

squirrelmail squirrelmail 0.1.2

squirrelmail squirrelmail 1.2.7

squirrelmail squirrelmail 1.0.1

squirrelmail squirrelmail 0.2.1

squirrelmail squirrelmail 1.4.12

squirrelmail squirrelmail 1.4.9a

squirrelmail squirrelmail 1.4.6

squirrelmail squirrelmail 1.2.0

squirrelmail squirrelmail 1.4.7

squirrelmail squirrelmail 1.4.3 rc1

squirrelmail squirrelmail 0.1

squirrelmail squirrelmail 1.4.15

squirrelmail squirrelmail 1.2.2

squirrelmail squirrelmail 0.5pre2

squirrelmail squirrelmail 1.1.1

squirrelmail squirrelmail 1.4.4 rc1

squirrelmail squirrelmail 1.2.0 rc3

squirrelmail squirrelmail 1.1.2

squirrelmail squirrelmail 1.4.15 rc1

squirrelmail squirrelmail 0.3pre2

squirrelmail squirrelmail 1.4.3

squirrelmail squirrelmail 0.1.1

squirrelmail squirrelmail 1.3.2

squirrelmail squirrelmail 1.2.1

squirrelmail squirrelmail 1.4.1

squirrelmail squirrelmail 1.4.9

squirrelmail squirrelmail 1.4.0 rc2a

squirrelmail squirrelmail 1.4.8

squirrelmail squirrelmail 1.4.0 rc1

squirrelmail squirrelmail 1.4.0

squirrelmail squirrelmail 1.1.3

squirrelmail squirrelmail 1.2.4

squirrelmail squirrelmail 0.5pre1

squirrelmail squirrelmail 1.2.3

squirrelmail squirrelmail 1.4.10

squirrelmail squirrelmail 1.4.3a

squirrelmail squirrelmail 1.0.2

squirrelmail squirrelmail 1.0.4

squirrelmail squirrelmail 1.0pre1

squirrelmail squirrelmail 1.2.6

squirrelmail squirrelmail 1.4.10a

squirrelmail squirrelmail 1.4.4

squirrelmail squirrelmail 0.3pre1

squirrelmail squirrelmail

squirrelmail squirrelmail 0.4pre1

squirrelmail squirrelmail 1.2.5

squirrelmail squirrelmail 1.4.11

squirrelmail squirrelmail 1.0.3

squirrelmail squirrelmail 1.3.0

squirrelmail squirrelmail 1.0

squirrelmail squirrelmail 0.2

squirrelmail squirrelmail 0.5

squirrelmail squirrelmail 1.4.5

squirrelmail squirrelmail 1.0pre3

Vendor Advisories

Synopsis Moderate: squirrelmail security update Type/Severity Security Advisory: Moderate Topic An updated squirrelmail package that resolves various security issues isnow available for Red Hat Enterprise Linux 3, 4 and 5This update has been rated as having moderate security impact by the RedHat Security R ...