Debian Security Update DSA-4700 roundcube - security update

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,896
Reaction score
75
Credits
-1,257
Matei Badanoiu and LoRexxar@knownsec discovered that roundcube, a skinnable AJAX based webmail solution for IMAP servers, did not correctly process and sanitize requests. This would allow a remote attacker to perform a Cross-Side Scripting (XSS) attack leading to the execution of arbitrary code.

Continue reading...
 


Follow Linux.org

Staff online


Top