Cross-site scripting (XSS) vulnerability in NetWin SurgeMail 6.0a4 allows remote attackers to inject arbitrary web script or HTML via the SRC attribute of an IFRAME element in the body of an HTML e-mail message.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://www.exploit-db.com/exploits/20363/ |
History
No history.
MITRE
Status: PUBLISHED
Assigner: certcc
Published: 2012-09-17T14:00:00Z
Updated: 2024-09-16T20:37:44.287Z
Reserved: 2012-05-09T00:00:00Z
Link: CVE-2012-2575
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-09-17T14:55:00.813
Modified: 2024-11-21T01:39:15.280
Link: CVE-2012-2575
Redhat
No data.