Cross-site scripting vulnerability in TransWARE Active! mail 1.422 and 2.0 allows remote attackers to execute arbitrary code via a certain e-mail header, which is not properly filtered.
| Software | From | Fixed in |
|---|---|---|
| transware / active_mail | 2.0 | 2.0.x |
| transware / active_mail | 1.422 | 1.422.x |