CVE Vulnerabilities

CVE-2005-1308

Published: Apr 15, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

SqWebMail allows remote attackers to inject arbitrary web script or HTML via CRLF sequences in the redirect parameter followed by the desired script or HTML.

Affected Software

NameVendorStart VersionEnd Version
SqwebmailInter73.4.1 (including)3.4.1 (including)
SqwebmailInter73.5.0 (including)3.5.0 (including)
SqwebmailInter73.5.1 (including)3.5.1 (including)
SqwebmailInter73.5.2 (including)3.5.2 (including)
SqwebmailInter73.5.3 (including)3.5.3 (including)
SqwebmailInter73.6.0 (including)3.6.0 (including)
SqwebmailInter73.6.1 (including)3.6.1 (including)
SqwebmailInter74.0.4_2004-05-24 (including)4.0.4_2004-05-24 (including)
SqwebmailInter74.0.5 (including)4.0.5 (including)

References