CVE-2020-29133 – jsp/upload.jsp in Coremail XT 5.0 allows XSS via an uploaded personal signature, as demons …

Vuln ID: CVE-2020-29133

Published:  2020-11-27  01:15:11Z

Description: jsp/upload.jsp in Coremail XT 5.0 allows XSS via an uploaded personal signature, as demonstrated by a .jpg.html filename in the signImgFile parameter.

Source: NVD.NIST.GOV

 


Date:

Categorie(s):

Tag(s):