Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-33xh-3h2c-ghq3

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью

Описание

webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame via a URL in the right_frame parameter. NOTE: this has been called a cross-site scripting (XSS) issue, but it is different than what is normally identified as XSS.

webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame via a URL in the right_frame parameter. NOTE: this has been called a cross-site scripting (XSS) issue, but it is different than what is normally identified as XSS.

EPSS

Процентиль: 79%
0.01309
Низкий

Связанные уязвимости

ubuntu
больше 19 лет назад

webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame via a URL in the right_frame parameter. NOTE: this has been called a cross-site scripting (XSS) issue, but it is different than what is normally identified as XSS.

redhat
больше 19 лет назад

webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame via a URL in the right_frame parameter. NOTE: this has been called a cross-site scripting (XSS) issue, but it is different than what is normally identified as XSS.

nvd
больше 19 лет назад

webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame via a URL in the right_frame parameter. NOTE: this has been called a cross-site scripting (XSS) issue, but it is different than what is normally identified as XSS.

debian
больше 19 лет назад

webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to ...

EPSS

Процентиль: 79%
0.01309
Низкий