CVE-2012-3413
07.08.2012, 20:55
The HTMLQuoteColorer::process function in messageviewer/htmlquotecolorer.cpp in KDE PIM 4.6 through 4.8 does not disable JavaScript, Java, and Plugins, which allows remote attackers to inject arbitrary web script or HTML via a crafted email.Enginsight
Vendor | Product | Version |
---|---|---|
kde | kde_pim | 4.6 |
kde | kde_pim | 4.8 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References