Cross-site scripting (XSS) in frmCompose.aspx in SmarterTools SmarterMail 1511/06/01 e 1529/06/01 consente agli aggressori remoti di inserire lo script Web arbitrario o HTML tramite Javascript per la funzione ""controllo ortografico"" nell’area di composizione. |
http://www.securityfocus.com/bid/9805 http://members.lycos.co.uk/r34ct/main/smarter_mail%203.1/smarter_mail.txt http://www.zone-h.org/advisories/read/id=4098 http://www.osvdb.org/4145 http://securitytracker.com/id?1009307 http://secunia.com/advisories/11042 https://exchange.xforce.ibmcloud.com/vulnerabilities/15393 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-2585 |
Vulnerabilità: CVE-2004-2585
