VYPR

WebMail

by Mail

CVEs (2)

  • CVE-2010-4930Oct 9, 2011
    risk 0.03cvss epss 0.03

    Cross-site scripting (XSS) vulnerability in index.php in @mail Webmail before 6.2.0 allows remote attackers to inject arbitrary web script or HTML via the MailType parameter in a mail/auth/processlogin action.

  • CVE-2006-6700Dec 23, 2006
    risk 0.00cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in @Mail WebMail allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: This information is based upon a vague initial disclosure. Details will be updated after the grace period has ended.