Oval Definition:
oval:org.mitre.oval:def:18672
Revision Date
:
2014-06-23
Version
:
6
Title
:
DSA-1682-1 squirrelmail - cross site scripting
Description
:
Ivan Markovic discovered that SquirrelMail, a webmail application, did not sufficiently sanitise incoming HTML email, allowing an attacker to perform cross site scripting through sending a malicious HTML email.
Family
:
unix
Class
:
patch
Status
:
ACCEPTED
Reference(s)
:
CVE-2008-2379
DSA-1682-1
Platform(s)
:
Debian GNU/Linux 4.0
Product(s)
:
squirrelmail
Definition Synopsis
Debian GNU/Linux 4.0 is installed.
AND
squirrelmail DPKG is earlier than 2:1.4.9a-3
BACK