CVE-2022-37238: XSS
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the currentRequest parameter.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-37238?
CVE-2022-37238 is a vulnerability in MDaemon Technologies SecurityGateway for Email Servers version 8.5.2 that allows for Cross Site Scripting (XSS) attacks via the currentRequest parameter.
How severe is CVE-2022-37238?
CVE-2022-37238 has a severity rating of 5.4, which is considered medium.
How does CVE-2022-37238 affect MDaemon Technologies SecurityGateway for Email Servers?
CVE-2022-37238 affects MDaemon Technologies SecurityGateway for Email Servers version 8.5.2, allowing for Cross Site Scripting (XSS) attacks through the currentRequest parameter.
Is there a fix available for CVE-2022-37238?
Yes, MDaemon Technologies has released a fix for CVE-2022-37238. It is recommended to update to the latest version of MDaemon Technologies SecurityGateway for Email Servers.
How can I learn more about CVE-2022-37238?
You can find more information about CVE-2022-37238 in the release notes provided by MDaemon Technologies and the advisory document provided by GTN.