CVE-2002-1131

Cross-site scripting vulnerabilities in SquirrelMail 1.2.7 and earlier allows remote attackers to execute script as other web users via (1) addressbook.php, (2) options.php, (3) search.php, or (4) help.php.

Date published : 2002-09-24

http://www.securityfocus.com/bid/5763

http://archives.neohapsis.com/archives/bugtraq/2002-09/0246.html