CVE-2022-37239: XSS
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the rulleslistajax endpoint.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-37239?
CVE-2022-37239 refers to a vulnerability in MDaemon Technologies SecurityGateway for Email Servers 8.5.2 that allows for Cross Site Scripting (XSS) attacks via the rulles_list_ajax endpoint.
How does CVE-2022-37239 impact MDaemon Technologies SecurityGateway?
CVE-2022-37239 can be exploited to perform Cross Site Scripting (XSS) attacks on MDaemon Technologies SecurityGateway for Email Servers 8.5.2.
What is the severity of CVE-2022-37239?
The severity of CVE-2022-37239 is medium with a CVSS severity score of 5.4.
How can I fix CVE-2022-37239 vulnerability in MDaemon Technologies SecurityGateway?
To fix the CVE-2022-37239 vulnerability in MDaemon Technologies SecurityGateway, it is recommended to update to the latest version of the software.
Is there any additional information about CVE-2022-37239?
For more information about CVE-2022-37239, you can refer to the following resources: [1] (https://files.mdaemon.com/securitygateway/release/relnotes_en.htm) and [2] (https://gtn.com.np/wp-content/uploads/2022/07/Stored-Cross-Site-Scripting-XSS.pdf)