Описание
Cross-site scripting (XSS) vulnerability in Roundcube Webmail before 0.7, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via vectors involving an embedded image attachment.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 0.7.2-1 |
| hardy | ignored | end of life |
| lucid | ignored | end of life |
| natty | ignored | end of life |
| oneiric | ignored | end of life |
| precise | not-affected | 0.7.1-2 |
| quantal | not-affected | 0.7.2-1 |
| raring | not-affected | 0.7.2-1 |
| saucy | not-affected | 0.7.2-1 |
| upstream | released | 0.7 |
Показывать по
2.6 Low
CVSS2
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in Roundcube Webmail before 0.7, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via vectors involving an embedded image attachment.
Cross-site scripting (XSS) vulnerability in Roundcube Webmail before 0 ...
Cross-site scripting (XSS) vulnerability in Roundcube Webmail before 0.7, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via vectors involving an embedded image attachment.
2.6 Low
CVSS2