Impact
GestSup versions prior to 3.2.62 fail to sanitize HTML email bodies processed by the IMAP LOGIN connector. Unauthenticated attackers can send an email to the monitored mailbox with script tags or event‑handler attributes, which are stored in ticket descriptions and replies. When technicians view the affected tickets, the browser executes the injected JavaScript, allowing the attacker to exfiltrate ticket data or perform unauthorized client‑side actions.
Affected Systems
GestSup (GestSup) application, all releases before 3.2.62, as documented by the vendor’s changelog and patch releases.
Risk and Exploitability
The vulnerability carries a CVSS score of 5.3, indicating moderate risk. The EPSS score is not provided, and the issue is not listed in the CISA Known Exploited Vulnerabilities catalog. Based on the description, the likely attack vector is an unauthenticated email sent to the mailbox monitored by the IMAP connector; the exploit requires only the ability to inject an email and a technician to open the resulting ticket.
OpenCVE Enrichment