4.3
CVE-2006-0978
- EPSS 2.11%
- Veröffentlicht 03.03.2006 11:02:00
- Zuletzt bearbeitet 16.06.2026 22:21:46
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Multiple cross-site scripting (XSS) vulnerabilities in the View Headers (aka viewheaders) functionality in ArGoSoft Mail Server Pro 1.8.8.5 allow remote attackers to inject arbitrary web script or HTML via (1) the Subject header, (2) the From header, and (3) certain other unspecified headers.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Argosoft ≫ Argosoft Mail Server Version1.8.8.5 Editionpro
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.11% | 0.793 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 4.3 | 8.6 | 2.9 |
AV:N/AC:M/Au:N/C:N/I:P/A:N
|
http://secunia.com/advisories/18991
http://secunia.com/secunia_research/2006-6/advisory/
http://securityreason.com/securityalert/504
http://www.osvdb.org/23512
http://www.securityfocus.com/archive/1/426206/100/0/threaded
http://www.securityfocus.com/bid/16834
http://www.vupen.com/english/advisories/2006/0751
https://exchange.xforce.ibmcloud.com/vulnerabilities/24945