Reflected Cross-Site Scripting Vulnerability in Outdated MailForm01 Free Edition

Reflected Cross-Site Scripting Vulnerability in Outdated MailForm01 Free Edition

CVE-2021-20723 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Reflected cross-site scripting vulnerability in [MailForm01] free edition (versions which the last updated date listed at the top of descriptions in the program file is from 2014 December 12 to 2018 July 27) allows a remote attacker to inject an arbitrary script via unspecified vectors.

Learn more about our Web Application Penetration Testing UK.