CVE-2005-0314 - Uncivil Discounts
Description
Cross-site scripting (XSS) vulnerability in user.php in Magic Winmail Server 4.0 Build 1112 allows remote attackers to inject arbitrary web script or HTML via the personal information fields.
Reference
http://www.securityfocus.com/bid/12388 http://securitytracker.com/id?1013017 http://secunia.com/advisories/14053 http://marc.info/?l=bugtraq&m=110685011825461&w=2 https://exchange.xforce.ibmcloud.com/vulnerabilities/19113