CVE
- Id
- 32496
- CVE No.
- CVE-2008-2379
- Status
- Candidate
- Description
- Cross-site scripting (XSS) vulnerability in SquirrelMail before 1.4.17 allows remote attackers to inject arbitrary web script or HTML via a crafted hyperlink in an HTML part of an e-mail message.
- Phase
- Assigned (20080521)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
| Id | CVE Id | CVE No. | Reference | Actions |
|---|---|---|---|---|
| 351803 | 32496 | CVE-2008-2379 | MISC:http://security-net.biz/wsw/index.php?p=254&n=190 | View |
| 351804 | 32496 | CVE-2008-2379 | CONFIRM:http://www.squirrelmail.org/index.php | View |
| 351805 | 32496 | CVE-2008-2379 | CONFIRM:http://support.apple.com/kb/HT3438 | View |
| 351806 | 32496 | CVE-2008-2379 | APPLE:APPLE-SA-2009-02-12 | View |
| 351807 | 32496 | CVE-2008-2379 | URL:http://lists.apple.com/archives/security-announce/2009/Feb/msg00000.html | View |
| 351808 | 32496 | CVE-2008-2379 | DEBIAN:DSA-1682 | View |
| 351809 | 32496 | CVE-2008-2379 | URL:http://www.debian.org/security/2008/dsa-1682 | View |
| 351810 | 32496 | CVE-2008-2379 | FEDORA:FEDORA-2008-10740 | View |
| 351811 | 32496 | CVE-2008-2379 | URL:https://www.redhat.com/archives/fedora-package-announce/2008-December/msg00223.html | View |
| 351812 | 32496 | CVE-2008-2379 | FEDORA:FEDORA-2008-10918 | View |
| 351813 | 32496 | CVE-2008-2379 | URL:https://www.redhat.com/archives/fedora-package-announce/2008-December/msg00449.html | View |
| 351814 | 32496 | CVE-2008-2379 | SUSE:SUSE-SR:2008:027 | View |
| 351815 | 32496 | CVE-2008-2379 | URL:http://lists.opensuse.org/opensuse-security-announce/2008-12/msg00002.html | View |
| 351816 | 32496 | CVE-2008-2379 | BID:32603 | View |
| 351817 | 32496 | CVE-2008-2379 | URL:http://www.securityfocus.com/bid/32603 | View |
| 351818 | 32496 | CVE-2008-2379 | OVAL:oval:org.mitre.oval:def:9764 | View |
| 351819 | 32496 | CVE-2008-2379 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9764 | View |
| 351820 | 32496 | CVE-2008-2379 | SECUNIA:33054 | View |
| 351821 | 32496 | CVE-2008-2379 | URL:http://secunia.com/advisories/33054 | View |
| 351822 | 32496 | CVE-2008-2379 | SECUNIA:33071 | View |
| 351823 | 32496 | CVE-2008-2379 | URL:http://secunia.com/advisories/33071 | View |
| 351824 | 32496 | CVE-2008-2379 | VUPEN:ADV-2008-3332 | View |
| 351825 | 32496 | CVE-2008-2379 | URL:http://www.vupen.com/english/advisories/2008/3332 | View |
| 351826 | 32496 | CVE-2008-2379 | SECUNIA:32143 | View |
| 351827 | 32496 | CVE-2008-2379 | URL:http://secunia.com/advisories/32143 | View |
| 351828 | 32496 | CVE-2008-2379 | SECUNIA:33937 | View |
| 351829 | 32496 | CVE-2008-2379 | URL:http://secunia.com/advisories/33937 | View |
| 351830 | 32496 | CVE-2008-2379 | XF:squirrelmail-html-xss(47024) | View |
Related JVN
| Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 39996 | JVNDB-2009-001002 | xterm における DECRQSS エスケープシーケンスの処理に関するクロスサイトリクエストフォージェリの脆弱性 | xterm には、DECRQSS エスケープシーケンスの処理に不備があるため、クロスサイトリクエストフォージェリの脆弱性が存在します。 | CVE-2008-2383 | 32496 | 9.3 | http://jvndb.jvn.jp/ja/contents/2009/JVNDB-2009-001002.html | View |