CVE-2003-0488

Multiple cross-site scripting (XSS) vulnerabilities in Kerio MailServer 5.6.3 allow remote attackers to insert arbitrary web script via (1) the add_name parameter in the add_acl module, or (2) the alias parameter in the do_map module.
Configurations

Configuration 1 (hide)

cpe:2.3:a:kerio:kerio_mailserver:5.6.3:*:*:*:*:*:*:*

History

20 Nov 2024, 23:44

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=105596982503760&w=2 - () http://marc.info/?l=bugtraq&m=105596982503760&w=2 -
References () http://nautopia.org/vulnerabilidades/kerio_mailserver.htm - Exploit, Vendor Advisory () http://nautopia.org/vulnerabilidades/kerio_mailserver.htm - Exploit, Vendor Advisory
References () http://www.securityfocus.com/bid/7966 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/bid/7966 - Exploit, Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/7968 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/bid/7968 - Exploit, Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/12367 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/12367 -

Information

Published : 2003-08-07 04:00

Updated : 2024-11-20 23:44


NVD link : CVE-2003-0488

Mitre link : CVE-2003-0488

CVE.ORG link : CVE-2003-0488


JSON object : View

Products Affected

kerio

  • kerio_mailserver