CVE-2008-2831
Mailmarshal E10000 Appliance - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in the delegated spam management feature in the Spam Quarantine Management (SQM) component in MailMarshal SMTP 6.0.3.8 through 6.3.0.0 allow user-assisted remote authenticated users to inject arbitrary web script or HTML via (1) the list of blocked senders or (2) the list of safe senders.
References (6)
Scores
EPSS
0.0034
EPSS Percentile
56.0%
Classification
CWE
CWE-79
Status
published
Affected Products (4)
mailmarshal/e10000_appliance
mailmarshal/smtp
mailmarshal/smtp
n/a/n/a
Timeline
Published
Oct 02, 2008
Tracked Since
Feb 18, 2026