CVE-2022-37243: XSS
Published Aug 25, 2022
·Updated
MDaemon Technologies SecurityGateway for Email Servers 8.5.2 is vulnerable to Cross Site Scripting (XSS) via the whitelist endpoint.
Affected Software
1 affected component
Altn Security Gateway For Email Servers=8.5.2
Event History
Aug 25, 2022
CVE Published
via MITRE·02:43 PM
Data Sourced
via MITRE·02:43 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-37243?
The severity of CVE-2022-37243 is medium with a CVSS score of 5.4.
2
How does CVE-2022-37243 affect MDaemon Technologies SecurityGateway for Email Servers?
CVE-2022-37243 affects MDaemon Technologies SecurityGateway for Email Servers version 8.5.2.
3
What is the vulnerability type of CVE-2022-37243?
CVE-2022-37243 is a Cross-Site Scripting (XSS) vulnerability.
4
How can an attacker exploit CVE-2022-37243?
An attacker can exploit CVE-2022-37243 by injecting malicious scripts into the whitelist endpoint of MDaemon Technologies SecurityGateway for Email Servers 8.5.2.
5
Is there a fix for CVE-2022-37243?
Yes, it is recommended to update to a fixed version of MDaemon Technologies SecurityGateway for Email Servers to address CVE-2022-37243.