CVE-2024-24130: MAIL2WORLD Webmail
Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.
Mail2World v12 Business Control Center was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the Usr parameter at resellercenter/login.asp.
Affected products
- MAIL2WORLD MAIL2WORLD Webmail: version 12 only
Published 2024-02-07. Last modified 2026-06-17.