IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/basic/ with the parameter _dlg[captcha][controller] is non-persistent in 10.1.3 and 10.2.0.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-10-11T10:35:50

Updated: 2024-08-07T04:17:10.280Z

Reserved: 2019-10-11T00:00:00

Link: CVE-2010-5337

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-10-11T11:15:09.763

Modified: 2019-10-15T19:20:22.580

Link: CVE-2010-5337

cve-icon Redhat

No data.