Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8rrq-x6h3-fm8w

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly escape HTML characters, which allows remote attackers to inject arbitrary data and HTML via a MIME Content-ID header in a MIME-encoded image.

The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly escape HTML characters, which allows remote attackers to inject arbitrary data and HTML via a MIME Content-ID header in a MIME-encoded image.

EPSS

Процентиль: 94%
0.14825
Средний

Связанные уязвимости

redhat
больше 22 лет назад

The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly escape HTML characters, which allows remote attackers to inject arbitrary data and HTML via a MIME Content-ID header in a MIME-encoded image.

nvd
около 22 лет назад

The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly escape HTML characters, which allows remote attackers to inject arbitrary data and HTML via a MIME Content-ID header in a MIME-encoded image.

debian
около 22 лет назад

The handle_image function in mail-format.c for Ximian Evolution Mail U ...

EPSS

Процентиль: 94%
0.14825
Средний