Cross-Site Scripting in SmarterMail Enterprise by SmarterTools
CVE-2008-0872

Currently unrated

Key Information:

Vendor
CVE Published:
21 February 2008

What is CVE-2008-0872?

The SmarterMail Enterprise 4.3 by SmarterTools is susceptible to a Cross-Site Scripting (XSS) vulnerability. This flaw allows remote attackers to inject arbitrary scripts or HTML content into email messages by manipulating the STYLE attribute within the Subject field. Exploitation of this vulnerability can lead to unauthorized access and execution of malicious code in the context of the user's browser, potentially compromising sensitive information and user privacy.

References

EPSS Score

5% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2008-0872 : Cross-Site Scripting in SmarterMail Enterprise by SmarterTools