Vulnerabilities > CVE-2005-3428 - Cross-Site Scripting vulnerability in MailSite Express

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
rockliffe

Summary

Cross-site scripting (XSS) vulnerability in Rockliffe MailSite Express before 6.1.22 allows remote attackers to inject arbitrary web script or HTML via a message body.

Vulnerable Configurations

Part Description Count
Application
Rockliffe
1

Oval

accepted2006-03-09T12:19:00.000-04:00
classvulnerability
contributors
nameRahul Mohandas
organizationOS2A
descriptionCross-site scripting (XSS) vulnerability in Rockliffe MailSite Express before 6.1.22 allows remote attackers to inject arbitrary web script or HTML via a message body.
familywindows
idoval:org.mitre.oval:def:1052
statusaccepted
submitted2006-01-25T07:14:00.000-04:00
titleMultiple Vulnerabilities in Rockliffe MailSite Express
version2