Cross-site scripting (XSS) vulnerability in search.php in SquirrelMail 1.5.1 and earlier, when register_globals is enabled, allows remote attackers to inject arbitrary HTML via the mailbox parameter.
References
Configurations
Information
Published : 2006-06-22 17:02
Updated : 2017-07-19 18:32
NVD link : CVE-2006-3174
Mitre link : CVE-2006-3174
JSON object : View
CWE
Products Affected
squirrelmail
- squirrelmail