HGiga MailSherlock - XSS -2
CVE-2020-35741
7HIGH
What is CVE-2020-35741?
HGiga MailSherlock does not validate user parameters on multiple login pages. Attackers can use the vulnerability to inject JavaScript syntax for XSS attacks.
Affected Version(s)
MailSherlock MSR45/SSR45 iSherlock-antispam-4.5 < 133
MailSherlock MSR45/SSR45 iSherlock-user-4.5 < 120
