Vulnerabilities > CVE-2004-0337 - Cross-Site Scripting vulnerability in Software602 602Pro LAN Suite Web Mail
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Cross-site scripting (XSS) vulnerability in LAN SUITE Web Mail 602Pro allows remote attackers to execute arbitrary script or HTML as other users via a URL to index.html, followed by a / (slash) and the desired script. NOTE: the vendor states that this bug could not be reproduced, so this issue may be REJECTed in the future.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 2 |
Exploit-Db
description | Software602 602Pro LAN Suite Web Mail Cross-Site Scripting Vulnerability. CVE-2004-0337. Remote exploit for windows platform |
id | EDB-ID:23776 |
last seen | 2016-02-02 |
modified | 2004-03-01 |
published | 2004-03-01 |
reporter | Rafel Ivgi The-Insider |
source | https://www.exploit-db.com/download/23776/ |
title | Software602 602Pro LAN Suite Web Mail Cross-Site Scripting Vulnerability |