CVE-2026-48534 | GFI Archiver up to 15.12 IMAP Server Configuration ImapServerWizard.aspx ImapServerWizard.SaveAllConfigSettings server_url cross site scripting
A vulnerability was found in GFI Archiver up to 15.12. It has been rated as problematic. Impacted is the function ImapServerWizard.SaveAllConfigSettings of the file /Archiver/ImapServerWizard.aspx of the component IMAP Server Configuration. The manipulation of the argument server_url leads to cross site scripting.
This vulnerability is traded as CVE-2026-48534. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is advised.VulDB Recent EntriesRead More