TUCoPS :: Web :: Specific Sites :: b06-2885.htm
Effected files:=0D
=0D is a free throw away, no sending email service. You enter an account name and you can instantly check email.=0D
XSS Vulnerability:=0D
It seems the title of emails and subjects are not sanatized, so if a user was to put  as a title or subject of aemail, and then someone went to view it, an XSS attack could occur.

