LWN.net Logo

imp4: cross-site scripting

Package(s):imp4 CVE #(s):CVE-2009-0930
Created:April 13, 2009 Updated:April 1, 2010
Description:

From the Debian advisory:

It was discovered that imp4 is prone to several cross-site scripting (XSS) attacks via several vectors in the mail code allowing attackers to inject arbitrary HTML code.

Alerts:
Fedora FEDORA-2010-5508 2010-04-01
Gentoo 200909-14 2009-09-12
Debian DSA-1770-1 2009-04-13

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds