MailStore Server search-result Reflected Cross-Site Scripting

A reflected cross-site scripting vulnerability has been reported in MailStore Server. The vulnerability is due to insufficient input validation on user input for search results. A remote user can exploit this vulnerability by enticing an authenticated user to click on a malicious link.

from Check Point Update Services Advisories http://ift.tt/2rePPKc

No comments:

Post a Comment