CommuniMail Multiple Cross-Site Scripting Vulnerabilities


These issues can be exploited through a web client.

The following proof-of-concept URIs are available:

http://www.example.com/cgi-bin/communimail/mailadmin.cgi?saction=show_contacts&list_id=[XSS]

http://www.example.com/cgi-bin/communimail/templates.cgi?saction=edit_form&form_id=[XSS]


 

Privacy Statement
Copyright 2010, SecurityFocus