Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

NetWin SurgeMail Multiple Unspecified Input Validation Vulnerabilities

Multiple unspecified vulnerabilities affect SurgeMail. Reportedly, these issues are due to a failure of the application to properly sanitize user-supplied input prior to employing it in critical locations including dynamic content. A successful attack may allow attackers to execute arbitrary HTML and script code in a user's browser.

SurgeMail 3.0c2 is reported to be affected by these issues. Other versions may be vulnerable as well.

Due to a lack of details, further information cannot be provided at the moment. This BID will be updated when more details are available.







 

Privacy Statement
Copyright 2009, SecurityFocus