CVE-2010-5338
11.10.2019, 11:15
IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/basic/ with the parameter _dlg[captcha][action] is non-persistent in 10.1.3 and 10.2.0.
Vendor | Product | Version |
---|---|---|
icewarp | webclient | 10.0 ≤ 𝑥 < 10.2.1 |
𝑥
= Vulnerable software versions
References