CVE-2008-4045

Multiple cross-site scripting (XSS) vulnerabilities in @Mail 5.42 allow remote attackers to inject arbitrary web script or HTML via the (1) file and (2) HelpFile parameters to parse.php, the (3) Folder and (4) start parameters to showmail.php, and the (5) abookview parameter to abook.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:\@mail:\@mail:5.42:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-09-11 21:06

Updated : 2024-02-28 11:21


NVD link : CVE-2008-4045

Mitre link : CVE-2008-4045

CVE.ORG link : CVE-2008-4045


JSON object : View

Products Affected

\@mail

  • \@mail
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')