Cross-site scripting (XSS) vulnerability in index.php in Aker Secure Mail Gateway 2.5.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the msg_id parameter.
References
Link | Resource |
---|---|
http://www.kb.cert.org/vuls/id/687278 | Patch US Government Resource |
http://www.securityfocus.com/bid/66024 |
Configurations
History
No history.
Information
Published : 2014-03-11 13:01
Updated : 2024-02-04 18:35
NVD link : CVE-2013-6037
Mitre link : CVE-2013-6037
CVE.ORG link : CVE-2013-6037
JSON object : View
Products Affected
aker
- secure_mail_gateway
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')