CVE-2019-8984: XSS
MDaemon Webmail 14.x through 18.x before 18.5.2 has XSS (issue 2 of 2).
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-8984?
CVE-2019-8984 is a vulnerability in MDaemon Webmail 14.x through 18.x before 18.5.2 that allows for cross-site scripting (XSS) attacks.
How severe is CVE-2019-8984?
CVE-2019-8984 has a severity rating of 6.1 out of 10, which is considered medium.
How does CVE-2019-8984 impact MDaemon Webmail?
CVE-2019-8984 allows attackers to execute malicious scripts in the context of the user's browser, potentially leading to unauthorized access to sensitive information or session hijacking.
Is there a fix for CVE-2019-8984?
Yes, the vulnerability can be fixed by updating MDaemon Webmail to version 18.5.2 or later.
Where can I find more information about CVE-2019-8984?
More information about CVE-2019-8984 can be found at the following link: [https://www.altn.com/Support/SecurityUpdate/MD021519_MDaemon_EN/](https://www.altn.com/Support/SecurityUpdate/MD021519_MDaemon_EN/)