CVE-2006-3305

Multiple cross-site scripting (XSS) vulnerabilities in UebiMiau Webmail 2.7.10, and 2.7.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) f_user parameter in index.php, the (2) pag parameter in messages.php, or the (3) lid, (4) tid, and (5) sid parameters in error.php.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:uebimiau:uebimiau:*:*:*:*:*:*:*:*
cpe:2.3:a:uebimiau:uebimiau:2.7.10:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-06-29 01:05

Updated : 2023-12-10 10:28


NVD link : CVE-2006-3305

Mitre link : CVE-2006-3305

CVE.ORG link : CVE-2006-3305


JSON object : View

Products Affected

uebimiau

  • uebimiau