CVE-2025-44148
MailEnable failure.aspx Cross Site Scripting Vulnerability
Halo Surface Signal: 5 out of 5 — more likely to be public-facing.
A critical cross-site scripting vulnerability in MailEnable could permit remote code execution by an attacker. This affects the failure.aspx component, and if reachable, could compromise system integrity. Understanding if MailEnable is used is crucial to assess potential risk.