CVE-2012-2593: XSS
Cross-site scripting (XSS) vulnerability in the administrative interface in Atmail Webmail Server 6.4 allows remote attackers to inject arbitrary web script or HTML via the Date field of an email.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2012-2593?
CVE-2012-2593 is a Cross-site scripting (XSS) vulnerability in the administrative interface in Atmail Webmail Server 6.4.
How does CVE-2012-2593 affect Atmail Webmail Server?
CVE-2012-2593 allows remote attackers to inject arbitrary web script or HTML via the Date field of an email.
What is the severity of CVE-2012-2593?
CVE-2012-2593 has a severity rating of 6.1 (medium).
How can I fix CVE-2012-2593?
To fix CVE-2012-2593, update Atmail Webmail Server to a version that is not affected by the vulnerability.
Where can I find more information about CVE-2012-2593?
You can find more information about CVE-2012-2593 at the following references: [Exploit-db](http://www.exploit-db.com/exploits/20009) and [SecurityFocus](http://www.securityfocus.com/bid/54630).