Security Advisory

CVE-2006-0188

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-02-24 00:00:00
Last updated 2024-08-07 16:25:34
Assigner mitre
State PUBLISHED

Description

webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame via a URL in the right_frame parameter. NOTE: this has been called a cross-site scripting (XSS) issue, but it is different than what is normally identified as XSS.