CVE-2023-22333

Cross-site scripting vulnerability in EasyMail 2.00.130 and earlier allows a remote unauthenticated attacker to inject an arbitrary script.
References
Link Resource
https://jvn.jp/en/jp/JVN05288621/ Third Party Advisory
https://www.mubag.com/download/ Vendor Advisory
https://jvn.jp/en/jp/JVN05288621/ Third Party Advisory
https://www.mubag.com/download/ Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:mubag:easymail:*:*:*:*:*:*:*:*

History

21 Nov 2024, 07:44

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de cross-site scripting en EasyMail 2.00.130 y versiones anteriores permite que un atacante remoto no autenticado inyecte un script arbitrario.
References () https://jvn.jp/en/jp/JVN05288621/ - Third Party Advisory () https://jvn.jp/en/jp/JVN05288621/ - Third Party Advisory
References () https://www.mubag.com/download/ - Vendor Advisory () https://www.mubag.com/download/ - Vendor Advisory

Information

Published : 2023-01-30 07:15

Updated : 2025-03-28 16:15


NVD link : CVE-2023-22333

Mitre link : CVE-2023-22333

CVE.ORG link : CVE-2023-22333


JSON object : View

Products Affected

mubag

  • easymail
CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')