CVE-2018-0687
Summary
| CVE | CVE-2018-0687 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-11-15 15:29:00 UTC |
| Updated | 2018-12-17 15:14:00 UTC |
| Description | Cross-site scripting vulnerability in Denbun by NEOJAPAN Inc. (Denbun POP version V3.3P R4.0 and earlier, Denbun IMAP version V3.3I R4.0 and earlier) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
Risk And Classification
Problem Types: CWE-79
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Neo | Debun Imap | All | All | All | All |
| Application | Neo | Debun Pop | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Denbun POP - Important Information | Denbun, The Next Generation WebMail System | MISC | www.denbun.com | Vendor Advisory |
| Denbun IMAP - Important Information | Denbun, The Next Generation WebMail System | MISC | www.denbun.com | Vendor Advisory |
| JVN#00344155: Multiple vulnerabilities in Denbun | JVN | jvn.jp | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.