Security Advisory
CVE-2010-5337
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/basic/ with the parameter _dlg[captcha][controller] is non-persistent in 10.1.3 and 10.2.0.