Back to Database
Status published
High
CVE-2005-1308
SqWebMail allows remote attackers to inject arbitrary web script or...
Vulnerability Description
SqWebMail allows remote attackers to inject arbitrary web script or HTML via CRLF sequences in the redirect parameter followed by the desired script or HTML.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2005-1308
Credits & Attribution
No credits recorded in the NVD database.
More from inter7
View All →CVE-2007-0558
PHP remote file inclusion vulnerability in modules/mail/main.php in Inter7 vHostAdmin...
High
7.5
CVE-2006-2346
vpopmail 5.4.14 and 5.4.15, with cleartext passwords enabled, allows remote...
High
7.5
CVE-2006-1141
Buffer overflow in qmailadmin.c in QmailAdmin before 1.2.10 allows remote...
High
7.5
CVE-2005-2820
Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers...
Medium
4.3
CVE-2005-2769
Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 and possibly other...
Medium
4.3
Affected Vendor
inter7
View all reports →Affected Software
sqwebmail
Vulnerable Versions:
3.4.1, 3.5.0, 3.5.1, 3.5.2, 3.5.3, 3.6.0, 3.6.1, 4.0.4_2004-05-24, 4.0.5
Timeline
Official Publish:
April 27th, 2005
Last Modified:
September 17th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.