Cross-site scripting (XSS) vulnerability in neomail.pl in NeoMail 1.29 allows remote attackers to inject arbitrary web script or HTML via the sessionid parameter.
References
Configurations
History
No history.
Information
Published : 2006-05-02 10:02
Updated : 2024-02-04 16:52
NVD link : CVE-2006-2138
Mitre link : CVE-2006-2138
CVE.ORG link : CVE-2006-2138
JSON object : View
Products Affected
neomail
- neomail
CWE