Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 and possibly other versions allows remote attackers to inject arbitrary web script or HTML via an HTML e-mail containing tags with strings that contain ">" or other special characters, which is not properly sanitized by SqWebMail.
https://exchange.xforce.ibmcloud.com/vulnerabilities/22043
http://www.ubuntu.com/usn/usn-201-1
http://secunia.com/advisories/17156