vendor:
Inout Webmail
by:
Sid3^effects aKa HaRi
7,5
CVSS
HIGH
XSS
79
CWE
Product Name: Inout Webmail
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: N/A
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2010
inoutwebmail Persistent Xss Vulnerability
The vulnerability exists due to failure in the script to properly sanitize user-supplied input.Successful exploitation of this vulnerability could result in a compromise of the application,disclosure or modification of sensitive data. The Xss vulnerability exists in 'contacts',emailfilter. Also the attacker can send malicious xss scripts to the users who are using this application. Attack parameter: '><script>alert('xss')</script>'
Mitigation:
N/A