CVE

CVE-2004-2494

Severity:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2004
Last modified:
11/07/2017

Description

Cross-site scripting (XSS) vulnerability in _error in Ability Mail Server 1.18 allows remote attackers to inject arbitrary web script or HTML via the erromsg parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:code-crafters:ability_mail_server:1.18:*:*:*:*:*:*:*