Логотип exploitDog
bind:"CVE-2007-1262" OR bind:"CVE-2007-2589"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2007-1262" OR bind:"CVE-2007-2589"

Количество 11

Количество 11

oracle-oval логотип

ELSA-2007-0358

около 18 лет назад

ELSA-2007-0358: Moderate: squirrelmail security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2007-2589

около 18 лет назад

Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail 1.4.0 through 1.4.9a allows remote attackers to send e-mails from arbitrary users via certain data in the SRC attribute of an IMG element.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2007-2589

около 18 лет назад

Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail 1.4.0 through 1.4.9a allows remote attackers to send e-mails from arbitrary users via certain data in the SRC attribute of an IMG element.

EPSS: Низкий
nvd логотип

CVE-2007-2589

около 18 лет назад

Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail 1.4.0 through 1.4.9a allows remote attackers to send e-mails from arbitrary users via certain data in the SRC attribute of an IMG element.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2007-2589

около 18 лет назад

Cross-site request forgery (CSRF) vulnerability in compose.php in Squi ...

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2007-1262

около 18 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the HTML filter in SquirrelMail 1.4.0 through 1.4.9a allow remote attackers to inject arbitrary web script or HTML via the (1) data: URI in an HTML e-mail attachment or (2) various non-ASCII character sets that are not properly filtered when viewed with Microsoft Internet Explorer.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2007-1262

около 18 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the HTML filter in SquirrelMail 1.4.0 through 1.4.9a allow remote attackers to inject arbitrary web script or HTML via the (1) data: URI in an HTML e-mail attachment or (2) various non-ASCII character sets that are not properly filtered when viewed with Microsoft Internet Explorer.

EPSS: Низкий
nvd логотип

CVE-2007-1262

около 18 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the HTML filter in SquirrelMail 1.4.0 through 1.4.9a allow remote attackers to inject arbitrary web script or HTML via the (1) data: URI in an HTML e-mail attachment or (2) various non-ASCII character sets that are not properly filtered when viewed with Microsoft Internet Explorer.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2007-1262

около 18 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the HTML filter ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-829x-7jw5-28q3

больше 3 лет назад

Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail 1.4.0 through 1.4.9a allows remote attackers to send e-mails from arbitrary users via certain data in the SRC attribute of an IMG element.

EPSS: Низкий
github логотип

GHSA-54w4-g2h9-3rxv

больше 3 лет назад

Multiple cross-site scripting (XSS) vulnerabilities in the HTML filter in SquirrelMail 1.4.0 through 1.4.9a allow remote attackers to inject arbitrary web script or HTML via the (1) data: URI in an HTML e-mail attachment or (2) various non-ASCII character sets that are not properly filtered when viewed with Microsoft Internet Explorer.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2007-0358

ELSA-2007-0358: Moderate: squirrelmail security update (MODERATE)

около 18 лет назад
ubuntu логотип
CVE-2007-2589

Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail 1.4.0 through 1.4.9a allows remote attackers to send e-mails from arbitrary users via certain data in the SRC attribute of an IMG element.

CVSS2: 5
1%
Низкий
около 18 лет назад
redhat логотип
CVE-2007-2589

Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail 1.4.0 through 1.4.9a allows remote attackers to send e-mails from arbitrary users via certain data in the SRC attribute of an IMG element.

1%
Низкий
около 18 лет назад
nvd логотип
CVE-2007-2589

Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail 1.4.0 through 1.4.9a allows remote attackers to send e-mails from arbitrary users via certain data in the SRC attribute of an IMG element.

CVSS2: 5
1%
Низкий
около 18 лет назад
debian логотип
CVE-2007-2589

Cross-site request forgery (CSRF) vulnerability in compose.php in Squi ...

CVSS2: 5
1%
Низкий
около 18 лет назад
ubuntu логотип
CVE-2007-1262

Multiple cross-site scripting (XSS) vulnerabilities in the HTML filter in SquirrelMail 1.4.0 through 1.4.9a allow remote attackers to inject arbitrary web script or HTML via the (1) data: URI in an HTML e-mail attachment or (2) various non-ASCII character sets that are not properly filtered when viewed with Microsoft Internet Explorer.

CVSS2: 4.3
2%
Низкий
около 18 лет назад
redhat логотип
CVE-2007-1262

Multiple cross-site scripting (XSS) vulnerabilities in the HTML filter in SquirrelMail 1.4.0 through 1.4.9a allow remote attackers to inject arbitrary web script or HTML via the (1) data: URI in an HTML e-mail attachment or (2) various non-ASCII character sets that are not properly filtered when viewed with Microsoft Internet Explorer.

2%
Низкий
около 18 лет назад
nvd логотип
CVE-2007-1262

Multiple cross-site scripting (XSS) vulnerabilities in the HTML filter in SquirrelMail 1.4.0 through 1.4.9a allow remote attackers to inject arbitrary web script or HTML via the (1) data: URI in an HTML e-mail attachment or (2) various non-ASCII character sets that are not properly filtered when viewed with Microsoft Internet Explorer.

CVSS2: 4.3
2%
Низкий
около 18 лет назад
debian логотип
CVE-2007-1262

Multiple cross-site scripting (XSS) vulnerabilities in the HTML filter ...

CVSS2: 4.3
2%
Низкий
около 18 лет назад
github логотип
GHSA-829x-7jw5-28q3

Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail 1.4.0 through 1.4.9a allows remote attackers to send e-mails from arbitrary users via certain data in the SRC attribute of an IMG element.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-54w4-g2h9-3rxv

Multiple cross-site scripting (XSS) vulnerabilities in the HTML filter in SquirrelMail 1.4.0 through 1.4.9a allow remote attackers to inject arbitrary web script or HTML via the (1) data: URI in an HTML e-mail attachment or (2) various non-ASCII character sets that are not properly filtered when viewed with Microsoft Internet Explorer.

2%
Низкий
больше 3 лет назад

Уязвимостей на страницу