CVE-2008-2333: XSS
Cross-site scripting (XSS) vulnerability in ldaptest.cgi in Barracuda Spam Firewall (BSF) before 3.5.11.025 allows remote attackers to inject arbitrary web script or HTML via the email parameter.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-2333?
The severity of CVE-2008-2333 is classified as a medium-risk cross-site scripting vulnerability.
How do I fix CVE-2008-2333?
To fix CVE-2008-2333, you should upgrade to Barracuda Spam Firewall version 3.5.11.025 or later.
Which versions of Barracuda Spam Firewall are affected by CVE-2008-2333?
Versions of Barracuda Spam Firewall prior to 3.5.11.025, including 3.1.x, 3.3.x, and 3.4.x, are affected by CVE-2008-2333.
What kind of attack is CVE-2008-2333 vulnerable to?
CVE-2008-2333 is vulnerable to cross-site scripting (XSS) attacks, allowing remote attackers to inject arbitrary web scripts or HTML.
What is the email parameter in CVE-2008-2333?
The email parameter in CVE-2008-2333 is a vulnerable input field in ldap_test.cgi that can be exploited for XSS.