Back to Database
Status published
Medium
CVE-2005-2595
Cross-site scripting (XSS) vulnerability in Dada Mail before 2.10 Alpha...
Vulnerability Description
Cross-site scripting (XSS) vulnerability in Dada Mail before 2.10 Alpha 1 allows remote attackers to execute arbitrary Javascript via archived messages.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2005-2595
Credits & Attribution
No credits recorded in the NVD database.
Affected Vendor
dada mail
View all reports →Affected Software
dada mail
Vulnerable Versions:
2.8.10, 2.8.11, 2.8.12, 2.8.12_beta, 2.8.13, 2.8.13_alpha1, 2.8.13_alpha2, 2.8.14_alpha1, 2.8.14_beta1, 2.8.14_rc1, 2.8.14_rc2, 2.8.15, 2.8.15_alpha1, 2.8.15_beta1, 2.8.15_rc1, 2.8.16_alpha1, 2.8.16_alpha2, 2.8.16_alpha3, 2.8.16_alpha4, 2.9.0, 2.9.0_beta1, 2.9.0_beta2, 2.9.0_rc1, 2.9.1, 2.9.2
Timeline
Official Publish:
August 17th, 2005
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.