CVE-2005-0563: XSS
Cross-site scripting (XSS) vulnerability in Microsoft Outlook Web Access (OWA) component in Exchange Server 5.5 allows remote attackers to inject arbitrary web script or HTML via an email message with an encoded javascript: URL ("javAsc
ript:") in an IMG tag.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0563?
CVE-2005-0563 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2005-0563?
To fix CVE-2005-0563, it is recommended to apply the security updates provided by Microsoft for Exchange Server 5.5.
What systems are affected by CVE-2005-0563?
CVE-2005-0563 specifically affects Microsoft Exchange Server version 5.5.
What type of vulnerability is CVE-2005-0563?
CVE-2005-0563 is a cross-site scripting (XSS) vulnerability that allows injection of malicious scripts.
Can CVE-2005-0563 be exploited remotely?
Yes, CVE-2005-0563 can be exploited remotely via crafted email messages.