Логотип exploitDog
bind:"CVE-2008-2379" OR bind:"CVE-2008-3663"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2008-2379" OR bind:"CVE-2008-3663"

Количество 11

Количество 11

oracle-oval логотип

ELSA-2009-0010

больше 16 лет назад

ELSA-2009-0010: squirrelmail security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2008-3663

больше 16 лет назад

Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2008-3663

почти 17 лет назад

Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

EPSS: Низкий
nvd логотип

CVE-2008-3663

больше 16 лет назад

Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2008-3663

больше 16 лет назад

Squirrelmail 1.4.15 does not set the secure flag for the session cooki ...

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2008-2379

больше 16 лет назад

Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 allows remote attackers to inject arbitrary web script or HTML via a crafted hyperlink in an HTML part of an e-mail message.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2008-2379

больше 16 лет назад

Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 allows remote attackers to inject arbitrary web script or HTML via a crafted hyperlink in an HTML part of an e-mail message.

EPSS: Низкий
nvd логотип

CVE-2008-2379

больше 16 лет назад

Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 allows remote attackers to inject arbitrary web script or HTML via a crafted hyperlink in an HTML part of an e-mail message.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2008-2379

больше 16 лет назад

Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-v6vw-6gwh-pprh

около 3 лет назад

Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

EPSS: Низкий
github логотип

GHSA-f3qv-gjq7-3m4g

около 3 лет назад

Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 allows remote attackers to inject arbitrary web script or HTML via a crafted hyperlink in an HTML part of an e-mail message.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2009-0010

ELSA-2009-0010: squirrelmail security update (MODERATE)

больше 16 лет назад
ubuntu логотип
CVE-2008-3663

Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

CVSS2: 5
1%
Низкий
больше 16 лет назад
redhat логотип
CVE-2008-3663

Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

1%
Низкий
почти 17 лет назад
nvd логотип
CVE-2008-3663

Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

CVSS2: 5
1%
Низкий
больше 16 лет назад
debian логотип
CVE-2008-3663

Squirrelmail 1.4.15 does not set the secure flag for the session cooki ...

CVSS2: 5
1%
Низкий
больше 16 лет назад
ubuntu логотип
CVE-2008-2379

Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 allows remote attackers to inject arbitrary web script or HTML via a crafted hyperlink in an HTML part of an e-mail message.

CVSS2: 4.3
1%
Низкий
больше 16 лет назад
redhat логотип
CVE-2008-2379

Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 allows remote attackers to inject arbitrary web script or HTML via a crafted hyperlink in an HTML part of an e-mail message.

1%
Низкий
больше 16 лет назад
nvd логотип
CVE-2008-2379

Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 allows remote attackers to inject arbitrary web script or HTML via a crafted hyperlink in an HTML part of an e-mail message.

CVSS2: 4.3
1%
Низкий
больше 16 лет назад
debian логотип
CVE-2008-2379

Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 ...

CVSS2: 4.3
1%
Низкий
больше 16 лет назад
github логотип
GHSA-v6vw-6gwh-pprh

Squirrelmail 1.4.15 does not set the secure flag for the session cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.

1%
Низкий
около 3 лет назад
github логотип
GHSA-f3qv-gjq7-3m4g

Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 allows remote attackers to inject arbitrary web script or HTML via a crafted hyperlink in an HTML part of an e-mail message.

1%
Низкий
около 3 лет назад

Уязвимостей на страницу