CVE-2021-20723

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
24/05/2021
Last modified:
28/05/2021

Description

Reflected cross-site scripting vulnerability in [MailForm01] free edition (versions which the last updated date listed at the top of descriptions in the program file is from 2014 December 12 to 2018 July 27) allows a remote attacker to inject an arbitrary script via unspecified vectors.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mailform01_project:mailform01:*:*:*:*:free:*:*:* 2014-12-12 (including) 2018-07-27 (including)