Unrated severityNVD Advisory· Published Dec 31, 2002· Updated Jun 16, 2026
CVE-2002-1649
CVE-2002-1649
Description
Cross-site scripting (XSS) vulnerability in read_body.php in SquirrelMail before 1.2.3 allows remote attackers to execute arbitrary Javascript via a javascript: URL in an IMG tag.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:squirrelmail:squirrelmail:1.2.2:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:squirrelmail:squirrelmail:1.2.2:*:*:*:*:*:*:*
- (no CPE)range: <1.2.3
Patches
Vulnerability mechanics
References
4News mentions
0No linked articles in our index yet.