verifysecurity

1 exploit Active since Apr 2019
CVE-2019-7219 NOMISEC MEDIUM WORKING POC
Zarafa Webapp - Unauthenticated Reflected Cross-Site Scripting
Unauthenticated reflected cross-site scripting (XSS) exists in Zarafa Webapp 2.0.1.47791 and earlier. NOTE: this is a discontinued product. The issue was fixed in later Zarafa Webapp versions; however, some former Zarafa Webapp customers use the related Kopano product instead.
CVSS 6.1