First published: Tue Feb 06 2018(Updated: )
WebConsole Cross-Site Scripting in Kaspersky Secure Mail Gateway version 1.1.
Credit: vulnerability@kaspersky.com
Affected Software | Affected Version | How to fix |
---|---|---|
Kaspersky Secure Mail Gateway | =1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-6291 has a medium severity rating due to its Cross-Site Scripting vulnerability.
To fix CVE-2018-6291, update Kaspersky Secure Mail Gateway to a patched version provided by Kaspersky.
CVE-2018-6291 can facilitate Cross-Site Scripting attacks, potentially allowing an attacker to execute malicious scripts.
No, CVE-2018-6291 specifically affects Kaspersky Secure Mail Gateway version 1.1.
Users affected by CVE-2018-6291 are at risk of session hijacking and data theft due to the Cross-Site Scripting vulnerability.