CVE-2008-2333
Barracuda Spam Firewall < 3.5.11.025 - Cross-Site Scripting via LDAP Test Email Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-2333. PoCs published by Information Risk Management Plc.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Barracuda Spam Firewall by injecting a script tag into the 'email' parameter of the 'ldap_test.cgi' endpoint. The vulnerability allows arbitrary JavaScript execution in the context of the affected site.
Description
Cross-site scripting (XSS) vulnerability in ldap_test.cgi in Barracuda Spam Firewall (BSF) before 3.5.11.025 allows remote attackers to inject arbitrary web script or HTML via the email parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Barracuda Spam Firewall by injecting a script tag into the 'email' parameter of the 'ldap_test.cgi' endpoint. The vulnerability allows arbitrary JavaScript execution in the context of the affected site.