WP SimpleMail Plugin 1.0.6 - Multiple Cross-Site Scripting (XSS) Vulnerabilities

WP SimpleMail Plugin 1.0.6 - Multiple Cross-Site Scripting (XSS) Vulnerabilities

CVE-2012-2579 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

Multiple cross-site scripting (XSS) vulnerabilities in the WP SimpleMail plugin 1.0.6 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) To, (2) From, (3) Date, or (4) Subject field of an email.

Learn more about our Wordpress Pen Testing.