Cross-site scripting (XSS) vulnerability in PHP Kobo Multifunctional MailForm Free 2014/1/28 and earlier allows remote attackers to inject arbitrary web script or HTML via an HTTP Referer header.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-08-06T10:57:18.058Z

Reserved: 2014-05-27T00:00:00

Link: CVE-2014-3894

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-07-20T11:12:50.620

Modified: 2025-04-12T10:46:40.837

Link: CVE-2014-3894

cve-icon Redhat

No data.