VYPR
Medium severity6.1NVD Advisory· Published May 24, 2021· Updated Jun 17, 2026

CVE-2021-20723

CVE-2021-20723

Description

Reflected cross-site scripting vulnerability in [MailForm01] free edition (versions which the last updated date listed at the top of descriptions in the program file is from 2014 December 12 to 2018 July 27) allows a remote attacker to inject an arbitrary script via unspecified vectors.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:a:mailform01_project:mailform01:*:*:*:*:free:*:*:*
    Range: >=2014-12-12,<=2018-07-27
  • Range: from 2014 December 12 to 2018 July 27
  • PHP Factory/[MailForm01] free editionv5
    Range: versions which the last updated date listed at the top of descriptions in the program file is from 2014 December 12 to 2018 July 27

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.