CNCVE编号:CNCVE-20020009 CVE编号: 安全级别:高 漏洞中文描述: AeroMail是种基于WEB的电子邮件系统,由Mark Cushman负责开发、维护,可用于Windows、Unix操作系统。旧版的AeroMail允许执行包含在邮件中的JavaScript脚本。如果AeroMail用户收到一封恶意的邮件,其中的攻击代码将得到执行。 漏洞英文描述: designed for Windows and Unix systems. An issue exists in AeroMail which could allow for the execution of JavaScript included in an email message to execute. If a maliciously constructed email message is received by an AeroMail user, JavaScript included in the message will execute. 漏洞参考: 系统类型:其他 漏洞类型:设计错误