Web Vulnerability Report
ID | EDB-ID-47988 |
CVSS 3.0 | N/A |
Cloudbric Score
?
|
High |
Cloudbric Detection | Yes |
Vulnerability Type | XSS |
Published Date | 2020-02-03 |
Updated Date | 2020-02-03 |
Vendor | N/A |
Description | An attacker can use XSS (in color parameter IceWarp WebMail 11.4.4.1 and before)to send a malicious script to an unsuspecting Admins or users. The end admins or useras browser has no way to know that the script should not be trusted, and will execute the script. Because it thinks the script came from a trusted source, the malicious script can access any cookies, session # tokens, or other sensitive information retained by the browser and used # with that site. These scripts can even rewrite the content of the HTML # page. Even an attacker can easily place users in social engineering through # this vulnerability and create a fake field. |
Reference | N/A |
URL Link | https://www.exploit-db.com/exploits/47988/ |
This vulnerability has been detected by Cloudbric!
Block NOW!
ID | Description | Vulnerability Type |
Cloudbric Score
?
|
Updated Date | Detection |
---|
To receive weekly updates on new vulnerabilities added to Threat Index
Subscribe Now