Description
Cross-site scripting (XSS) vulnerability in hilfe.php in b1gMail 6.3.1 allows remote attackers to inject arbitrary web script or HTML via the chapter parameter.
Affected products
- b1g / b1gmail6.3.1 – 6.3.1
References
- MISChttps://exchange.xforce.ibmcloud.com/vulnerabilities/36668
- VENDOR_ADVISORYhttp://www.vupen.com/english/advisories/2007/3193
- MISChttp://www.securityfocus.com/archive/1/479761/100/0/threaded
- VENDOR_ADVISORYhttp://secunia.com/advisories/26854
- MISChttp://securityreason.com/securityalert/3155
- MISChttp://www.securityfocus.com/bid/25699