MEDIUM
Cross-site scripting (XSS) vulnerability in Dada Mail before 2.10 Alpha 1 allows remote attackers to execute arbitrary Javascript via archived messages
Published Aug 17, 2005
4.3
MEDIUMCVSS 2.0
EPSS 1.16%
Description
Cross-site scripting (XSS) vulnerability in Dada Mail before 2.10 Alpha 1 allows remote attackers to execute arbitrary Javascript via archived messages.
Affected products
No data.
OR
- 2.8.10
- 2.8.11
- 2.8.12
- 2.8.12_beta
- 2.8.13
- 2.8.13_alpha1
- 2.8.13_alpha2
- 2.8.14_alpha1
- 2.8.14_beta1
- 2.8.14_rc1
- 2.8.14_rc2
- 2.8.15
- 2.8.15_alpha1
- 2.8.15_beta1
- 2.8.15_rc1
- 2.8.16_alpha1
- 2.8.16_alpha2
- 2.8.16_alpha3
- 2.8.16_alpha4
- 2.9.0
- 2.9.0_beta1
- 2.9.0_beta2
- 2.9.0_rc1
- 2.9.1
- 2.9.2
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (3)
- http://mojo.skazat.com/download/testing_2_10_0_alpha1.html x_refsource_CONFIRMPatch
- http://secunia.com/advisories/16435 third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory
- http://www.securityfocus.com/bid/14573 vdb-entryx_refsource_BID
| Link | Providers | Tags |
|---|---|---|
| http://mojo.skazat.com/download/testing_2_10_0_alpha1.html | x_refsource_CONFIRMPatch | |
| http://secunia.com/advisories/16435 | third-party-advisoryx_refsource_SECUNIAPatchVendor Advisory | |
| http://www.securityfocus.com/bid/14573 | vdb-entryx_refsource_BID |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Aug 17, 2005
Updated Aug 7, 2024
Reserved Aug 17, 2005
Link CVE-2005-2595
CISA Vulnrichment
Updated n/a