CVE-2014-2325
14.03.2014, 14:55
Multiple cross-site scripting (XSS) vulnerabilities in Proxmox Mail Gateway before 3.1-5829 allow remote attackers to inject arbitrary web script or HTML via the (1) state parameter to objects/who/index.htm or (2) User email address to quarantine/spam/manage.htm.
Vendor | Product | Version |
---|---|---|
proxmox | mail_gateway | 𝑥 ≤ 3.1-5741 |
proxmox | mail_gateway | 3.0 |
proxmox | mail_gateway | 3.1 |
proxmox | mail_gateway | 3.1-5670 |
proxmox | mail_gateway | 3.1-5673 |
𝑥
= Vulnerable software versions
References