CVE-2002-1131: High severity squirrelmail squirrelmail vulnerability
Cross-site scripting vulnerabilities in SquirrelMail 1.2.7 and earlier allows remote attackers to execute script as other web users via (1) addressbook.php, (2) options.php, (3) search.php, or (4) help.php.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1131?
CVE-2002-1131 is considered a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2002-1131?
To fix CVE-2002-1131, update SquirrelMail to version 1.2.8 or later, which addresses these vulnerabilities.
What types of attacks are possible with CVE-2002-1131?
CVE-2002-1131 allows attackers to execute arbitrary scripts in the context of other web users, leading to unauthorized data access or manipulation.
Which versions of SquirrelMail are affected by CVE-2002-1131?
CVE-2002-1131 affects SquirrelMail versions 1.2.7 and earlier.
Can CVE-2002-1131 impact my web application?
Yes, if you are using an affected version of SquirrelMail, CVE-2002-1131 poses a risk to your web application's security.