Medium severity6.1NVD Advisory· Published Nov 26, 2019· Updated Jun 17, 2026
CVE-2019-19129
CVE-2019-19129
Description
Afterlogic WebMail Pro 8.3.11, and WebMail in Afterlogic Aurora 8.3.11, allows Remote Stored XSS via an attachment name.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
58.3.11+ 1 more
- (no CPE)range: 8.3.11
- cpe:2.3:a:afterlogic:webmail_pro:8.3.11:*:*:*:*:*:*:*
8.3.11+ 1 more
- (no CPE)range: 8.3.11
- cpe:2.3:a:afterlogic:aurora:8.3.11:*:*:*:*:*:*:*
- Afterlogic/WebMail Prodescription
Patches
Vulnerability mechanics
References
2- auroramail.wordpress.com/2019/11/25/vulnerability-closed-in-webmail-and-aurora-remote-stored-xss-in-attachments-name/nvdThird Party Advisory
- afterlogic.comnvdProduct
News mentions
0No linked articles in our index yet.