Cross-Site Scripting in SmarterMail Enterprise by SmarterTools
CVE-2008-0872
Currently unrated
What is CVE-2008-0872?
The SmarterMail Enterprise 4.3 by SmarterTools is susceptible to a Cross-Site Scripting (XSS) vulnerability. This flaw allows remote attackers to inject arbitrary scripts or HTML content into email messages by manipulating the STYLE attribute within the Subject field. Exploitation of this vulnerability can lead to unauthorized access and execution of malicious code in the context of the user's browser, potentially compromising sensitive information and user privacy.
References
EPSS Score
5% chance of being exploited in the next 30 days.
Timeline
Vulnerability published
Vulnerability Reserved