Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers to inject arbitrary web script or HTML via a file attachment that is processed by the Display feature. NOTE: the severity of this issue has been disputed by the developer.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SqWebMail 跨站脚本攻击漏洞
Vulnerability Description
SqWebMail是使用Maildir邮箱发送和接收邮件的web CGI客户端。 SqWebMail中存在脚本注入漏洞,起因是SqWebMail允许在SqWebMail server环境中浏览附带的文件。攻击者可以利用这个漏洞在用户在附件文件上点击"显示"时执行任意脚本代码。
CVSS Information
N/A
Vulnerability Type
N/A