Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in MailBee WebMail Pro 3.4 and earlier; and possibly MailBee WebMail Pro ASP before 3.4.64, WebMail Lite ASP before 4.0.11, and WebMail Lite PHP before 4.0.22; allow remote attackers to inject arbitrary web script or HTML via the (1) mode parameter to login.php and the (2) mode2 parameter to default.asp in an advanced_login mode.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MailBee WebMail Pro advanced_login模式多个跨站脚本攻击漏洞
Vulnerability Description
MailBee WebMail中存在多个跨站脚本攻击漏洞,远程攻击者可以借助advanced_login模式中的(1)login.php中的mode参数和(2)default.asp的mode2参数注入任意web脚本或HTML。
CVSS Information
N/A
Vulnerability Type
N/A