CVE-2008-2831

Mailmarshal E10000 Appliance - XSS

Title source: rule

Description

Multiple cross-site scripting (XSS) vulnerabilities in the delegated spam management feature in the Spam Quarantine Management (SQM) component in MailMarshal SMTP 6.0.3.8 through 6.3.0.0 allow user-assisted remote authenticated users to inject arbitrary web script or HTML via (1) the list of blocked senders or (2) the list of safe senders.

Scores

EPSS 0.0034
EPSS Percentile 56.0%

Classification

CWE
CWE-79
Status published

Affected Products (4)

mailmarshal/e10000_appliance
mailmarshal/smtp
mailmarshal/smtp
n/a/n/a

Timeline

Published Oct 02, 2008
Tracked Since Feb 18, 2026