|
|
| |
|
| |
roundcubemail: cross-site scripting
| Package(s): | roundcubemail |
CVE #(s): | CVE-2007-6321
|
| Created: | June 16, 2008 |
Updated: | June 18, 2008 |
| Description: |
From the Red Hat bugzilla:
Cross-site scripting (XSS) vulnerability in RoundCube webmail 0.1rc2,
2007-12-09, and earlier versions, when using Internet Explorer, allows remote
attackers to inject arbitrary web script or HTML via style sheets containing
expression commands.
|
| Alerts: |
|
( Log in to post comments)
|
|
|