vendor:
Outblaze Webmail
by:
Unknown
7.5
CVSS
HIGH
HTML Injection
79
CWE
Product Name: Outblaze Webmail
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE: Unknown
CPE: a:outblaze:webmail
Platforms Tested:
Unknown
Outblaze Webmail HTML Injection Vulnerability
The Outblaze Webmail application is prone to an HTML injection vulnerability. This vulnerability occurs when the application fails to properly sanitize user-supplied HTML email content. An attacker can exploit this vulnerability by injecting HTML and script code into the application through HTML emails.
Mitigation:
To mitigate this vulnerability, it is recommended to implement proper input validation and sanitization techniques to prevent HTML injection attacks. Additionally, users should be cautious when opening HTML emails from unknown or untrusted sources.