Files
cve/2012/CVE-2012-3507.md
2025-09-29 21:09:30 +02:00

731 B

CVE-2012-3507

Description

Cross-site scripting (XSS) vulnerability in program/steps/mail/func.inc in RoundCube Webmail before 0.8.0, when using the Larry skin, allows remote attackers to inject arbitrary web script or HTML via the email message subject.

POC

Reference

Github

No PoCs found on GitHub currently.