Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-0195

Опубликовано: 24 фев. 2006
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

Interpretation conflict in the MagicHTML filter in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to conduct cross-site scripting (XSS) attacks via style sheet specifiers with invalid (1) "/" and "/" comments, or (2) a newline in a "url" specifier, which is processed by certain web browsers including Internet Explorer.

РелизСтатусПримечание
dapper

released

1.4.6-1ubuntu0.1
devel

released

1.4.10a-2
edgy

released

1.4.8-1ubuntu0.1
feisty

released

1.4.9a-1ubuntu0.1
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 85%
0.02644
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 19 лет назад

Interpretation conflict in the MagicHTML filter in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to conduct cross-site scripting (XSS) attacks via style sheet specifiers with invalid (1) "/*" and "*/" comments, or (2) a newline in a "url" specifier, which is processed by certain web browsers including Internet Explorer.

nvd
больше 19 лет назад

Interpretation conflict in the MagicHTML filter in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to conduct cross-site scripting (XSS) attacks via style sheet specifiers with invalid (1) "/*" and "*/" comments, or (2) a newline in a "url" specifier, which is processed by certain web browsers including Internet Explorer.

debian
больше 19 лет назад

Interpretation conflict in the MagicHTML filter in SquirrelMail 1.4.0 ...

github
больше 3 лет назад

Interpretation conflict in the MagicHTML filter in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to conduct cross-site scripting (XSS) attacks via style sheet specifiers with invalid (1) "/*" and "*/" comments, or (2) a newline in a "url" specifier, which is processed by certain web browsers including Internet Explorer.

EPSS

Процентиль: 85%
0.02644
Низкий

4.3 Medium

CVSS2