First published: Wed Dec 27 2017(Updated: )
Cross-site scripting (XSS) vulnerability in User Policy editor in Synology MailPlus Server before 1.4.0-0415 allows remote authenticated users to inject arbitrary HTML via the name parameter.
Credit: security@synology.com
Affected Software | Affected Version | How to fix |
---|---|---|
Synology MailPlus Server | <1.4.0-0415 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.