CVE-2024-24130: MAIL2WORLD Webmail

Medium severity, CVSS 6.1. EPSS: 0.4% chance of exploitation in the next 30 days.

Mail2World v12 Business Control Center was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the Usr parameter at resellercenter/login.asp.

Affected products

Published 2024-02-07. Last modified 2026-06-17.