Vulnerabilities > CVE-2002-0950 - HTML Injection vulnerability in TransWare Active Mail 1.422/2.0

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
transware

Summary

Cross-site scripting vulnerability in TransWARE Active! mail 1.422 and 2.0 allows remote attackers to execute arbitrary code via a certain e-mail header, which is not properly filtered.

Vulnerable Configurations

Part Description Count
Application
Transware
2