PublicDate: 2004-08-06 04:00:00 UTC Candidate: CVE-2004-0591 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2004-0591 Description: Cross-site scripting (XSS) vulnerability in the print_header_uc function for SqWebMail 4.0.4 and earlier, and possibly 3.x, allows remote attackers to inject arbitrary web script or HRML via (1) e-mail headers or (2) a message with a "message/delivery-status" MIME Content-Type. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_courier: released (0.47-13ubuntu5.1) edgy_courier: released (0.53.2-3ubuntu1) feisty_courier: released (0.53.2-3ubuntu1) devel_courier: released (0.53.2-3ubuntu1) upstream_courier: needs-triage