VendorsCoremail XT Projectcoremail_xt5.0
Vulnerabilities

Coremail XT Project Coremail XT 5.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2020-29133
jsp/upload.jsp in Coremail XT 5.0 allows XSS via an uploaded personal signature, as demonstrated by a .jpg.html filename in the signImgFile parameter.
Published 2020-11-27 · Modified
6.1EPSS 0.011