First published: Fri Mar 09 2012(Updated: )
Cross-site scripting (XSS) vulnerability in the Autocomplete plugin before 3.0 for SquirrelMail allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Paul Lesniewsk Autocomplete | <=2.1 | |
Paul Lesniewsk Autocomplete | =1.0 | |
Paul Lesniewsk Autocomplete | =1.1 | |
Paul Lesniewsk Autocomplete | =1.2 | |
Paul Lesniewsk Autocomplete | =1.3 | |
Paul Lesniewsk Autocomplete | =2.0 | |
Squirrelmail Squirrelmail |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.