First published: Thu Sep 08 2005(Updated: )
Cross-site scripting (XSS) vulnerability in openwebmail-main.pl in OpenWebMail 2.41 allows remote attackers to inject arbitrary web script or HTML via the sessionid parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Open Webmail | =2.41 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-2863 is classified as a moderate severity cross-site scripting (XSS) vulnerability.
To fix CVE-2005-2863, you should upgrade OpenWebMail to version 2.43 or later.
CVE-2005-2863 specifically affects OpenWebMail version 2.41.
CVE-2005-2863 allows remote attackers to inject arbitrary web scripts or HTML into affected applications.
CVE-2005-2863 is less widespread as it affects a specific version of OpenWebMail that is not commonly used today.