CVE-2006-0188
CVE-2006-0188
webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame via a URL in the right_frame parameter. NOTE: this has been called a cross-site scripting (XSS) issue, but it is different than what is normally identified as XSS.
Produtos afetados
n/a · n/aQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
ftp://patches.sgi.com/support/free/security/advisories/20060501-01-U.aschttp://secunia.com/advisories/18985http://secunia.com/advisories/19130http://secunia.com/advisories/19131http://secunia.com/advisories/19176http://secunia.com/advisories/19205http://secunia.com/advisories/19960http://secunia.com/advisories/20210http://securitytracker.com/id?1015662https://exchange.xforce.ibmcloud.com/vulnerabilities/24847https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10419http://www.debian.org/security/2006/dsa-988