Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-442m-4j9q-hhm9

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

WorldClient webmail in Alt-N MDaemon 8.1.3 allows remote attackers to prevent arbitrary users from accessing their inboxes via script tags in the Subject header of an e-mail message, which prevents the user from being able to access the Inbox folder, possibly due to a cross-site scripting (XSS) vulnerability.

WorldClient webmail in Alt-N MDaemon 8.1.3 allows remote attackers to prevent arbitrary users from accessing their inboxes via script tags in the Subject header of an e-mail message, which prevents the user from being able to access the Inbox folder, possibly due to a cross-site scripting (XSS) vulnerability.

EPSS

Процентиль: 67%
0.00542
Низкий

Дефекты

CWE-94

Связанные уязвимости

nvd
около 20 лет назад

WorldClient webmail in Alt-N MDaemon 8.1.3 allows remote attackers to prevent arbitrary users from accessing their inboxes via script tags in the Subject header of an e-mail message, which prevents the user from being able to access the Inbox folder, possibly due to a cross-site scripting (XSS) vulnerability.

EPSS

Процентиль: 67%
0.00542
Низкий

Дефекты

CWE-94