Cross-site scripting (XSS) vulnerability in search.php in SquirrelMail 1.5.1 and earlier, when register_globals is enabled, allows remote attackers to inject arbitrary HTML via the mailbox parameter.
References
Configurations
History
No history.
Information
Published : 2006-06-23 00:02
Updated : 2017-07-20 01:32
NVD link : CVE-2006-3174
Mitre link : CVE-2006-3174
CVE.ORG link : CVE-2006-3174
JSON object : View
Products Affected
squirrelmail
- squirrelmail
CWE