Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2004-0519
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-0519

Description:
Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.2 allow remote attackers to execute arbitrary script as other users and possibly steal authentication information via multiple attack vectors, including the mailbox parameter in compose.php.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/16025

SUSE
  http://www.novell.com/linux/security/advisories/2005_19_sr.html

SGI

SAID
  Secunia Advisory: SA12289
  Secunia Advisory: SA11531
  Secunia Advisory: SA11686
  Secunia Advisory: SA11870

REDHAT
  http://rhn.redhat.com/errata/RHSA-2004-240.html

OVAL
  http://oval.mitre.org/oval/definitions/data/oval1006.html

GENTOO
  http://security.gentoo.org/glsa/glsa-200405-16.xml

FEDORA
  http://www.securityfocus.com/advisories/6827

DEBIAN
  http://www.debian.org/security/2004/dsa-535

CONECTIVA
  http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000858

BUGTRAQ
  http://www.securityfocus.com/archive/1/361857
  http://marc.theaimsgroup.com/?l=bugtraq&m=108334862800260

BID
  10246


Return to the previous page.