Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2016-7966
Description:Through a malicious URL that contained a quote character it was possible to inject HTML code in KMail's plaintext viewer. Due to the parser used on the URL it was not possible to include the equal sign (=) or a space into the injected HTML, which greatly reduces the available HTML functionality. Although it is possible to include an HTML comment indicator to hide content.
Test IDs: 1.3.6.1.4.1.25623.1.0.842914   1.3.6.1.4.1.25623.1.1.1.2.2016.673   1.3.6.1.4.1.25623.1.0.703697  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2016-7966
BugTraq ID: 93360
http://www.securityfocus.com/bid/93360
Debian Security Information: DSA-3697 (Google Search)
http://www.debian.org/security/2016/dsa-3697
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/QNMM5TVPTJQFPJ3YDF4DPXDFW3GQLWLY/
http://www.openwall.com/lists/oss-security/2016/10/05/1
SuSE Security Announcement: openSUSE-SU-2016:2559 (Google Search)
http://lists.opensuse.org/opensuse-updates/2016-10/msg00065.html




© 1998-2025 E-Soft Inc. All rights reserved.