CVE-2021-27180
EUVD-2021-1394714.04.2021, 23:15
An issue was discovered in MDaemon before 20.0.4. There is Reflected XSS in Webmail (aka WorldClient). It can be exploited via a GET request. It allows performing any action with the privileges of the attacked user.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| altn | mdaemon | 𝑥 < 20.0.4 |
𝑥
= Vulnerable software versions