Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-22402

Опубликовано: 14 июн. 2023
Источник: debian

Описание

Cross Site Scripting (XSS) vulnerability in SOGo Web Mail before 4.3.1 allows attackers to obtain user sensitive information when a user reads an email containing malicious code.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sogofixed4.3.2-1package
sogonot-affectedbusterpackage

Примечания

  • https://bugs.sogo.nu//view.php?id=4979

  • https://github.com/Alinto/sogo/commit/d1dbceb407b37aff6563d06194189965af39cf3e (SOGo-4.3.1)

Связанные уязвимости

CVSS3: 6.1
ubuntu
больше 2 лет назад

Cross Site Scripting (XSS) vulnerability in SOGo Web Mail before 4.3.1 allows attackers to obtain user sensitive information when a user reads an email containing malicious code.

CVSS3: 6.1
nvd
больше 2 лет назад

Cross Site Scripting (XSS) vulnerability in SOGo Web Mail before 4.3.1 allows attackers to obtain user sensitive information when a user reads an email containing malicious code.

CVSS3: 6.1
github
больше 2 лет назад

Cross Site Scripting (XSS) vulnerability in SOGo Web Mail before 4.3.1 allows attackers to obtain user sensitive information when a user reads an email containing malicious code.