Cross-site scripting (XSS) vulnerability in index.html in IceWarp WebMail 5.5.1 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the PHPSESSID parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
icewarp web mail 3.3.2 |
||
icewarp web mail 3.4.1 |
||
icewarp web mail 5.3 |
||
icewarp web mail 5.3.1 |
||
icewarp web mail 3.4.2 |
||
icewarp web mail 3.5.0 |
||
icewarp web mail 3.5.1 |
||
icewarp web mail 5.3.2 |
||
icewarp web mail 5.4 |
||
icewarp web mail 3.1.4 |
||
icewarp web mail 3.3.1 |
||
icewarp web mail 5.2.7 |
||
icewarp web mail 5.2.8 |
||
icewarp web mail 1.40.00 |
||
icewarp web mail 1.40.10 |
||
icewarp web mail 4.1.4 |
||
icewarp web mail 4.1.5 |
||
icewarp web mail 5.5.1 |