First published: Fri Aug 25 2023(Updated: )
IceWarp 11.4.6.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the color parameter.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Icewarp Icewarp | =11.4.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2023-39600 is medium.
CVE-2023-39600 affects IceWarp 11.4.6.0 by allowing cross-site scripting (XSS) through the color parameter.
The Common Weakness Enumeration (CWE) ID for CVE-2023-39600 is CWE-79.
Please refer to the official IceWarp website or contact their support for information on the fix for CVE-2023-39600.
More details about CVE-2023-39600 can be found on the IceWarp website and a medium.com post by katikitala.sushmitha078.