CVE-2019-19266

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
06/01/2020
Last modified:
08/01/2020

Description

IceWarp WebMail Server 12.2.0 and 12.1.x before 12.2.1.1 (and probably earlier versions) allows XSS (issue 2 of 2) in notes for objects.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:icewarp:mail_server:*:*:*:*:*:*:*:* 12.2.1.1 (excluding)