Loading
Cross-site scripting (XSS) vulnerability in index.html in IceWarp WebMail 5.5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the PHPSESSID parameter.
Use Icewarp vendor hub and Web Mail product page to widen CVE-2006-2484 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2005-4556, CVE-2005-4558 and CVE-2006-0817 for nearby disclosures in the same product family.