CVE-2025-41441

Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
26/05/2025
Last modified:
03/06/2025

Description

Mailform Pro CGI prior to 4.3.4 generates error messages containing sensitive information, which may allow a remote unauthenticated attacker to obtain coupon codes. This vulnerability only affects products that use the coupon feature.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:synck:mailform_pro_cgi:*:*:*:*:*:*:*:* 4.3.4 (excluding)