CVE-2010-4930: XSS
Cross-site scripting (XSS) vulnerability in index.php in @mail Webmail before 6.2.0 allows remote attackers to inject arbitrary web script or HTML via the MailType parameter in a mail/auth/processlogin action.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-4930?
CVE-2010-4930 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2010-4930?
To fix CVE-2010-4930, upgrade to Atmail Webmail version 6.2.0 or later, as this version includes mitigation for the vulnerability.
What versions are affected by CVE-2010-4930?
CVE-2010-4930 affects Atmail Webmail versions up to and including 6.1.9.
Who can be targeted by CVE-2010-4930?
CVE-2010-4930 can be exploited by remote attackers targeting users of the vulnerable Atmail Webmail application.
What type of vulnerability is CVE-2010-4930?
CVE-2010-4930 is a cross-site scripting (XSS) vulnerability that allows attackers to inject malicious scripts.