← back
CVE-2019-7219

CVE-2019-7219

18Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 5.0%
exploitation probability
5.0%top 8% of all CVEs
observed exploitation
nono source reports it
Unauthenticated reflected cross-site scripting (XSS) exists in Zarafa Webapp 2.0.1.47791 and earlier. NOTE: this is a discontinued product. The issue was fixed in later Zarafa Webapp versions; however, some former Zarafa Webapp customers use the related Kopano product instead.
Affected products
n/a · n/a