Cross-site scripting (XSS) vulnerability in IceWarp Web Mail 3.3.3 and 3.4.5 allows remote attackers to inject arbitrary web script or HTML via the Full Name (addressname) parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Web_mail | Icewarp | 3.3.3 (including) | 3.3.3 (including) |
Web_mail | Icewarp | 3.3.5 (including) | 3.3.5 (including) |