CVE-2005-2863: XSS
Published Sep 8, 2005
·Updated
Cross-site scripting (XSS) vulnerability in openwebmail-main.pl in OpenWebMail 2.41 allows remote attackers to inject arbitrary web script or HTML via the sessionid parameter.
Affected Software
1 affected component
Open Webmail Open WebMail=2.41
Event History
Sep 8, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2863?
CVE-2005-2863 is classified as a moderate severity cross-site scripting (XSS) vulnerability.
2
How do I fix CVE-2005-2863?
To fix CVE-2005-2863, you should upgrade OpenWebMail to version 2.43 or later.
3
What does CVE-2005-2863 affect?
CVE-2005-2863 specifically affects OpenWebMail version 2.41.
4
What kind of attack does CVE-2005-2863 allow?
CVE-2005-2863 allows remote attackers to inject arbitrary web scripts or HTML into affected applications.
5
Is CVE-2005-2863 a widespread issue?
CVE-2005-2863 is less widespread as it affects a specific version of OpenWebMail that is not commonly used today.