Cross-site scripting vulnerability (XSS) in MHonArc 2.5.12 and earlier allows remote attackers to insert script or HTML via an email message with the script in a MIME header name.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Mhonarc | Mhonarc | 2.4.4 (including) | 2.4.4 (including) |
| Mhonarc | Mhonarc | 2.5.2 (including) | 2.5.2 (including) |
| Mhonarc | Mhonarc | 2.5.12 (including) | 2.5.12 (including) |