Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2023-47272
Description:Roundcube 1.5.x before 1.5.6 and 1.6.x before 1.6.5 allows XSS via a Content-Type or Content-Disposition header (used for attachment preview or download).
Test IDs: 1.3.6.1.4.1.25623.1.0.856382   1.3.6.1.4.1.25623.1.0.126526   1.3.6.1.4.1.25623.1.1.1.2.2023.3683   1.3.6.1.4.1.25623.1.0.885265   1.3.6.1.4.1.25623.1.0.885261   1.3.6.1.4.1.25623.1.1.1.1.2023.5572   1.3.6.1.4.1.25623.1.0.885267  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2023-47272
Debian Security Information: DSA-5572 (Google Search)
https://www.debian.org/security/2023/dsa-5572
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/YFRGBPET73URF6364CI547ZVWQESJLGK/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Z4F4DUA3Q46ZVB2RD7BFP4XMNS4RYFFQ/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GILSR762MJB3BNJOVOCMW2JXEPV46IIQ/
https://github.com/roundcube/roundcubemail/commit/5ec496885e18ec6af956e8c0d627856c2257ba2d
https://github.com/roundcube/roundcubemail/releases/tag/1.5.6
https://github.com/roundcube/roundcubemail/releases/tag/1.6.5
https://lists.debian.org/debian-lts-announce/2023/12/msg00005.html




© 1998-2025 E-Soft Inc. All rights reserved.