CVE-2012-3536
CVE-2012-3536
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 2.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
27 feb 2018Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Two XSS vulnerabilities were fixed in message list and view in the Hupa Webmail application from the Apache James project. An attacker could send a carefully crafted email to a user of Hupa which would trigger a XSS when the email was opened or when a list of messages were viewed. This issue was addressed in Hupa 0.0.3.
Productos afectados
Apache Software Foundation · Apache Hupa¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →