CVE Database
/

CVE-2012-3536

Back to search

CVE-2012-3536

Published: Feb 27, 2018

Modified: Sep 16, 2024

PUBLISHED

Description

Two XSS vulnerabilities were fixed in message list and view in the Hupa Webmail application from the Apache James project. An attacker could send a carefully crafted email to a user of Hupa which would trigger a XSS when the email was opened or when a list of messages were viewed. This issue was addressed in Hupa 0.0.3.

VendorProductVersions

Apache Software Foundation

Apache Hupa

affected
Hupa versions prior to 0.0.3

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now