Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2004-2447
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-2447

Description:
Cross-site scripting (XSS) vulnerability in 1st Class Mail Server 4.01 allows remote attackers to inject arbitrary web script or HTML via the Mailbox parameter to (1) viewmail.tagz, (2) the index script under /user/, (3) members.tagz, (4) general.tagz, (5) advanced.tagz, or (6) list.tagz.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/15815

ST
  1009705

SAID
  Secunia Advisory: SA11330

OSVDB
  5017
  5016
  5015
  5014
  5013
  5012

BID
  10089


Return to the previous page.