CVE-2013-6017: XSS
Cross-site scripting (XSS) vulnerability in Atmail Webmail Server before 7.2 allows remote attackers to inject arbitrary web script or HTML via the body of an e-mail message, as demonstrated by the SRC attribute of an IFRAME element.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6017?
CVE-2013-6017 is classified as a medium severity vulnerability due to its potential for cross-site scripting attacks.
How do I fix CVE-2013-6017?
To fix CVE-2013-6017, upgrade your Atmail Webmail Server to version 7.2 or later where the vulnerability has been addressed.
What versions of Atmail are affected by CVE-2013-6017?
CVE-2013-6017 affects Atmail Webmail Server versions 6.3.0 - 7.1.6 and older.
What type of vulnerability is CVE-2013-6017?
CVE-2013-6017 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts or HTML.
Can CVE-2013-6017 be exploited remotely?
Yes, CVE-2013-6017 can be exploited remotely by attackers through malicious email content.