CVE
- Id
- 16292
- CVE No.
- CVE-2006-0188
- Status
- Candidate
- Description
- webmail.php in SquirrelMail 1.4.0 to 1.4.5 allows remote attackers to inject arbitrary web pages into the right frame via a URL in the right_frame parameter. NOTE: this has been called a cross-site scripting (XSS) issue, but it is different than what is normally identified as XSS.
- Phase
- Assigned (20060112)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
129260 | 16292 | CVE-2006-0188 | CONFIRM:http://www.squirrelmail.org/security/issue/2006-02-01 | View |
129261 | 16292 | CVE-2006-0188 | DEBIAN:DSA-988 | View |
129262 | 16292 | CVE-2006-0188 | URL:http://www.debian.org/security/2006/dsa-988 | View |
129263 | 16292 | CVE-2006-0188 | FEDORA:FEDORA-2006-133 | View |
129264 | 16292 | CVE-2006-0188 | URL:http://www.redhat.com/archives/fedora-announce-list/2006-March/msg00004.html | View |
129265 | 16292 | CVE-2006-0188 | GENTOO:GLSA-200603-09 | View |
129266 | 16292 | CVE-2006-0188 | URL:http://www.gentoo.org/security/en/glsa/glsa-200603-09.xml | View |
129267 | 16292 | CVE-2006-0188 | MANDRIVA:MDKSA-2006:049 | View |
129268 | 16292 | CVE-2006-0188 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2006:049 | View |
129269 | 16292 | CVE-2006-0188 | REDHAT:RHSA-2006:0283 | View |
129270 | 16292 | CVE-2006-0188 | URL:http://www.redhat.com/support/errata/RHSA-2006-0283.html | View |
129271 | 16292 | CVE-2006-0188 | SGI:20060501-01-U | View |
129272 | 16292 | CVE-2006-0188 | URL:ftp://patches.sgi.com/support/free/security/advisories/20060501-01-U.asc | View |
129273 | 16292 | CVE-2006-0188 | SUSE:SUSE-SR:2006:005 | View |
129274 | 16292 | CVE-2006-0188 | URL:http://www.novell.com/linux/security/advisories/2006_05_sr.html | View |
129275 | 16292 | CVE-2006-0188 | BID:16756 | View |
129276 | 16292 | CVE-2006-0188 | URL:http://www.securityfocus.com/bid/16756 | View |
129277 | 16292 | CVE-2006-0188 | OVAL:oval:org.mitre.oval:def:10419 | View |
129278 | 16292 | CVE-2006-0188 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:10419 | View |
129279 | 16292 | CVE-2006-0188 | VUPEN:ADV-2006-0689 | View |
129280 | 16292 | CVE-2006-0188 | URL:http://www.vupen.com/english/advisories/2006/0689 | View |
129281 | 16292 | CVE-2006-0188 | SECTRACK:1015662 | View |
129282 | 16292 | CVE-2006-0188 | URL:http://securitytracker.com/id?1015662 | View |
129283 | 16292 | CVE-2006-0188 | SECUNIA:18985 | View |
129284 | 16292 | CVE-2006-0188 | URL:http://secunia.com/advisories/18985 | View |
129285 | 16292 | CVE-2006-0188 | SECUNIA:19131 | View |
129286 | 16292 | CVE-2006-0188 | URL:http://secunia.com/advisories/19131 | View |
129287 | 16292 | CVE-2006-0188 | SECUNIA:19130 | View |
129288 | 16292 | CVE-2006-0188 | URL:http://secunia.com/advisories/19130 | View |
129289 | 16292 | CVE-2006-0188 | SECUNIA:19176 | View |
129290 | 16292 | CVE-2006-0188 | URL:http://secunia.com/advisories/19176 | View |
129291 | 16292 | CVE-2006-0188 | SECUNIA:19205 | View |
129292 | 16292 | CVE-2006-0188 | URL:http://secunia.com/advisories/19205 | View |
129293 | 16292 | CVE-2006-0188 | SECUNIA:19960 | View |
129294 | 16292 | CVE-2006-0188 | URL:http://secunia.com/advisories/19960 | View |
129295 | 16292 | CVE-2006-0188 | SECUNIA:20210 | View |
129296 | 16292 | CVE-2006-0188 | URL:http://secunia.com/advisories/20210 | View |
129297 | 16292 | CVE-2006-0188 | XF:squirrelmail-webmail-xss(24847) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
57818 | JVNDB-2006-000014 | Sun Solaris におけるサービス運用妨害 (DoS) および root 権限を取得される脆弱性 | x86 プラットフォーム用の Sun Solaris 10 および、(1) Sun Solaris 9_x86 patch 112234-11、(2) Sun Solaris 9_x86 patch 112234-12、(3) Sun Solaris 9_x86 patch 117172-16 以降、の内いずれかのパッチが適用された Sun Solaris 9 には脆弱性が存在します。 | CVE-2006-0190 | 16292 | 7.2 | http://jvndb.jvn.jp/ja/contents/2006/JVNDB-2006-000014.html | View |