First published: Fri Nov 22 2019(Updated: )
PostfixAdmin 2.3.4 has multiple XSS vulnerabilities
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/postfixadmin | 3.3.13-1 | |
Postfix | =2.3.4 | |
Debian Linux | =8.0 | |
Debian Linux | =9.0 | |
Debian Linux | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0812 is considered to have a medium severity due to its multiple XSS vulnerabilities.
To fix CVE-2012-0812, update PostfixAdmin to version 2.3.5 or later.
CVE-2012-0812 specifically affects PostfixAdmin version 2.3.4 and may impact Debian versions 8.0, 9.0, and 10.0.
The potential risks of CVE-2012-0812 include unauthorized access to user data and session hijacking due to XSS vulnerabilities.
Yes, CVE-2012-0812 can be exploited easily by attackers to execute malicious scripts in the context of a user's session.