ZeroHour

CVE-2022-37244

PoC
CVSS 3.1
5.4 medium
EPSS
<1%p44
Published
()
Modified
Description

MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to IFRAME Injectionvia the currentRequest parameter. after login leads to inject malicious tag leads to IFRAME injection.

Vendors
altn
Products
security gateway for email servers
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.