Security Advisory

CVE-2010-5337

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2019-10-11 10:35:50
Last updated 2024-08-07 04:17:10
Assigner mitre
State PUBLISHED

Description

IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/basic/ with the parameter _dlg[captcha][controller] is non-persistent in 10.1.3 and 10.2.0.