Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-35115


IceWarp WebClient DC2 - Update 2 Build 9 (13.0.2.9) was discovered to contain a SQL injection vulnerability via the search parameter at /webmail/server/webmail.php.


Published

2022-08-23T18:15:08.947

Last Modified

2024-11-21T07:10:46.773

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-89

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application icewarp webclient_dc2 13.0.2.9 Yes

References