Vulnerability Details CVE-2024-11182
An XSS issue was discovered in
MDaemon Email Server before version 24.5.1c. An attacker can send an HTML e-mail message
with
JavaScript in an img tag. This could
allow a remote attacker
to load arbitrary JavaScript code in the context of a webmail user's browser window.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 12.2%
CVSS Severity
CVSS v3 Score 6.1
Products affected by CVE-2024-11182
-
cpe:2.3:a:mdaemon:mdaemon:5.0
-
cpe:2.3:a:mdaemon:mdaemon:5.0.6