Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2006-3522

Description

Cross-site scripting (XSS) vulnerability in Clearswift MIMEsweeper for Web before 5.1.15 Hotfix allows remote attackers to inject arbitrary web script or HTML via the URL, which is reflected back in an error message when trying to access a blocked web site.

POC

Reference

- http://marc.info/?l=full-disclosure&m=115249298204354&w=2

- http://marc.info/?l=full-disclosure&m=115253898206225&w=2

Github

No PoCs found on GitHub currently.