6.8
CVSS
CVE-2002-1434
Exploit Found
Multiple cross-site scripting (XSS) vulnerabilities in the Web mail module of Kerio MailServer 5.0 allow remote attackers to execute HTML script as other users via certain URLs.
Severity: MEDIUM