Back to Database
Status published
High
CVE-2002-0950
Cross-site scripting vulnerability in TransWARE Active! mail 1.422 and 2.0...
Vulnerability Description
Cross-site scripting vulnerability in TransWARE Active! mail 1.422 and 2.0 allows remote attackers to execute arbitrary code via a certain e-mail header, which is not properly filtered.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2002-0950
Credits & Attribution
No credits recorded in the NVD database.
References
More from transware
View All →CVE-2013-2302
TransWARE Active! mail 6, when an external public interface is...
Low
1.9
CVE-2010-3913
CRLF injection vulnerability in TransWARE Active! mail 6 build 6.40.010047750...
Medium
4.3
CVE-2009-4354
TransWARE Active! mail 2003 build 2003.0139.0871 and earlier does not...
Medium
5.8
CVE-2009-4353
The Mobile Edition of TransWARE Active! mail 2003 build 2003.0139.0871...
Medium
5.8
CVE-2009-4352
Multiple cross-site scripting (XSS) vulnerabilities in TransWARE Active! mail 2003...
Medium
4.3
Affected Vendor
transware
View all reports →Affected Software
active mail
Vulnerable Versions:
1.422, 2.0
Timeline
Official Publish:
August 31st, 2002
Last Modified:
August 8th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.