Unrated severityNVD Advisory· Published Dec 12, 2007· Updated Jun 16, 2026
CVE-2007-6321
CVE-2007-6321
Description
Cross-site scripting (XSS) vulnerability in RoundCube webmail 0.1rc2, 2007-12-09, and earlier versions, when using Internet Explorer, allows remote attackers to inject arbitrary web script or HTML via style sheets containing expression commands.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: <=2007-12-09
Patches
Vulnerability mechanics
References
7- openmya.hacker.jp/hasegawa/security/expression.txtnvdExploit
- securityreason.com/securityalert/3435nvdExploit
- trac.roundcube.net/ticket/1484701nvdExploit
- www.securityfocus.com/bid/26800nvdExploit
- secunia.com/advisories/30734nvd
- www.securityfocus.com/archive/1/484802/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/38981nvd
News mentions
0No linked articles in our index yet.