|
NetWin SurgeMail Multiple Unspecified Input Validation Vulnerabilities
Multiple unspecified vulnerabilities affect SurgeMail. Reportedly, these issues are due to a failure of the application to properly sanitize user-supplied input prior to employing it in critical locations including dynamic content. A successful attack may allow attackers to execute arbitrary HTML and script code in a user's browser. SurgeMail 3.0c2 is reported to be affected by these issues. Other versions may be vulnerable as well. Due to a lack of details, further information cannot be provided at the moment. This BID will be updated when more details are available. |
|
|
Privacy Statement |