Multiple cross-site scripting (XSS) vulnerabilities in the email auto-reply message in SurgeMail 2.2g3 allow remote attackers to inject arbitrary web script or HTML via the (1) message subject or (2) message header field.
References
Configurations
Information
Published : 2005-05-01 21:00
Updated : 2016-10-17 20:15
NVD link : CVE-2005-0846
Mitre link : CVE-2005-0846
JSON object : View
CWE
Products Affected
netwin
- surgemail