Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in Merak Mail Server 8.0.3 with Icewarp Web Mail 5.4.2 allow remote authenticated users to inject arbitrary web script or HTML via (1) the E-mail address, Note, or Public Certificate fields to address.html, (2) addressaction.html, (3) the Signature field to settings.html, or (4) the Shared calendars to calendarsettings.html.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Merak Mail Server Icewarp Web Mail跨站脚本攻击漏洞
Vulnerability Description
Merak Mail Server 8.0.3 with Icewarp Web Mail 5.4.2存在多个跨站脚本攻击(XSS)漏洞,远程认证用户可以通过(1)传给address.html的电子邮件地址、备注或公共证书字段,(2)addressaction.html,(3)传给settings.html的签名字段,或者(4)传给calendarsettings.html的Shared calendars,来注入任意Web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A