CVE-2006-0842: XSS
Cross-site scripting (XSS) vulnerability in Calacode @Mail 4.3 allows remote attackers to inject arbitrary web script or HTML via a modified javascript: string in the SRC attribute of an IMG element in an e-mail message, as demonstrated by "java	script:." NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-0842?
CVE-2006-0842 is considered a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2006-0842?
To fix CVE-2006-0842, users should upgrade to the latest version of Atmail that addresses this cross-site scripting vulnerability.
What kind of attacks can be executed through CVE-2006-0842?
Remote attackers can use CVE-2006-0842 to inject arbitrary web scripts or HTML into e-mail messages, leading to potential phishing or data theft.
Which software versions are affected by CVE-2006-0842?
CVE-2006-0842 specifically affects Calacode @Mail version 4.3.
How can I identify if my system is vulnerable to CVE-2006-0842?
You can identify vulnerability to CVE-2006-0842 by checking if you are using the affected version of Atmail and reviewing your e-mail message handling configurations.