Description
|
|
A vulnerability has been identified in Open WebMail, which may be exploited by attackers to inject malicious HTML code. This flaw is due to an input validation error in "openwebmail-main.pl" when processing a specially crafted "sessionid" parameter, which may be exploited by attackers to cause arbitrary scripting code to be executed by the user's browser.
|