← Back to CVE List

CVE-2010-5338

Published: 2019-10-11T11:15Z
Last Modified: 2024-11-21T01:23Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/basic/ with the parameter _dlg[captcha][action] is non-persistent in 10.1.3 and 10.2.0. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt