CVE-2023-4594: Cross-site Scripting in BVRP Software SLmail
Published Nov 23, 2023
·Updated
Stored XSS vulnerability. This vulnerability could allow an attacker to store a malicious JavaScript payload via GET and POST methods on multiple parameters in the MailAdmindll.htm file.
Affected Software
2 affected components
All of the following
Seattlelab Slmail=5.5.0.4433
Microsoft Windows
Remediation
Information
There is no reported solution at the moment.
Event History
Nov 23, 2023
CVE Published
12:35 PM
Data Sourced
12:35 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-4594.
2
What is the title of the vulnerability?
The title of the vulnerability is Cross-site Scripting in BVRP Software SLmail.
3
What is the severity of CVE-2023-4594?
The severity of CVE-2023-4594 is medium.
4
How does CVE-2023-4594 affect the affected software?
CVE-2023-4594 affects Seattlelab Slmail version 5.5.0.4433 on Windows.
5
How can I fix CVE-2023-4594?
To fix CVE-2023-4594, it is recommended to apply the latest updates or patches provided by the vendor.