Multiple cross-site scripting (XSS) vulnerabilities in Uebimiau Webmail allow remote attackers to inject arbitrary web script or HTML via (1) the PATH_INFO to redirect.php or (2) the selected_theme parameter to demo/pop3/error.php.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-06-11 15:30
Updated : 2017-07-28 18:32
NVD link : CVE-2007-3170
Mitre link : CVE-2007-3170
JSON object : View
CWE
Products Affected
uebimiau
- uebimiau