Security Advisory

CVE-2022-27105

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-07-26 21:08:13
Last updated 2024-11-01 16:46:34
Assigner mitre
State PUBLISHED

Description

InMailX Outlook Plugin < 3.22.0101 is vulnerable to Cross Site Scripting (XSS). InMailX Connection names are not sanitzed in the Outlook tab, which allows a local user or network administrator to execute HTML / Javascript in the Outlook of users.