CVE-2023-39600: XSS
Published Aug 25, 2023
·Updated
IceWarp 11.4.6.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the color parameter.
Affected Software
1 affected component
IceWarp IceWarp=11.4.6.0
Event History
Aug 25, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2023-39600?
The severity of CVE-2023-39600 is medium.
2
How does CVE-2023-39600 affect IceWarp 11.4.6.0?
CVE-2023-39600 affects IceWarp 11.4.6.0 by allowing cross-site scripting (XSS) through the color parameter.
3
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-39600?
The Common Weakness Enumeration (CWE) ID for CVE-2023-39600 is CWE-79.
4
Is there a fix available for CVE-2023-39600?
Please refer to the official IceWarp website or contact their support for information on the fix for CVE-2023-39600.
5
Where can I find more details about CVE-2023-39600?
More details about CVE-2023-39600 can be found on the IceWarp website and a medium.com post by katikitala.sushmitha078.