Show filters
1 Total Results
Displaying 1-1 of 1
Sort by:
Attacker Value
Unknown

Openfind MAIL2000 Webmail Post-Auth Cross-Site Scripting

Disclosure Date: November 20, 2019 (last updated October 06, 2023)
The login feature in "/cgi-bin/portal" in MAIL2000 through version 6.0 and 7.0 has a cross-site scripting (XSS) vulnerability, allowing execution of arbitrary code via any parameter. This vulnerability affects many mail system of governments, organizations, companies and universities.