CVE-2025-2150
10.03.2025, 08:15
The C&Cm@il from HGiga has a Stored Cross-Site Scripting (XSS) vulnerability, allowing remote attackers with regular privileges to send emails containing malicious JavaScript code, which will be executed in the recipient's browser when they view the email.
| Vendor | Product | Version |
|---|---|---|
| hgiga | c\&cm\@il | - |
𝑥
= Vulnerable software versions