CVE-2019-9557

Ability Mail Server 4.2.6 has Persistent Cross Site Scripting (XSS) via the body e-mail body. To exploit the vulnerability, the victim must open an email with malicious Javascript inserted into the body of the email as an iframe.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:codecrafters:ability_mail_server:4.2.6:*:*:*:*:*:*:*

Information

Published : 2019-03-12 12:29

Updated : 2019-03-13 05:17


NVD link : CVE-2019-9557

Mitre link : CVE-2019-9557


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

codecrafters

  • ability_mail_server