Cross-site scripting vulnerability (XSS) in MHonArc 2.5.12 and earlier allows remote attackers to insert script or HTML via an email message with the script in a MIME header name.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mhonarc | Mhonarc | 2.4.4 (including) | 2.4.4 (including) |
Mhonarc | Mhonarc | 2.5.2 (including) | 2.5.2 (including) |
Mhonarc | Mhonarc | 2.5.12 (including) | 2.5.12 (including) |