CVE-2006-3522
CVE-2006-3522
Cross-site scripting (XSS) vulnerability in Clearswift MIMEsweeper for Web before 5.1.15 Hotfix allows remote attackers to inject arbitrary web script or HTML via the URL, which is reflected back in an error message when trying to access a blocked web site.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://download.mimesweeper.com/www/TechnicalDocumentation/WebReadMeHotfix5115.htmhttp://marc.info/?l=full-disclosure&m=115249298204354&w=2http://marc.info/?l=full-disclosure&m=115253320721404&w=2http://marc.info/?l=full-disclosure&m=115253898206225&w=2http://secunia.com/advisories/20998http://securitytracker.com/id?1016454https://exchange.xforce.ibmcloud.com/vulnerabilities/27642http://www.securityfocus.com/archive/1/439641/100/0/threadedhttp://www.securityfocus.com/archive/1/440140/100/0/threadedhttp://www.securityfocus.com/bid/18916http://www.vupen.com/english/advisories/2006/2731