~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
PublicDate: 2005-09-02
Candidate: CVE-2005-2769
References:
 http://www.ubuntu.com/usn/usn-201-1
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2769
Description:
 Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 and possibly
 other versions allows remote attackers to inject arbitrary web script or
 HTML via an HTML e-mail containing tags with strings that contain ">" or
 other special characters, which is not properly sanitized by SqWebMail.
Ubuntu-Description:
Notes:
Bugs:
dapper_courier: released (0.47-13ubuntu5.1)
edgy_courier: released (0.53.2-3ubuntu1)
feisty_courier: released (0.53.2-3ubuntu1)
devel_courier: released (0.53.2-3ubuntu1)
upstream_courier: