Vulnerabilities > Mailform

DATE CVE VULNERABILITY TITLE RISK
2020-03-25 CVE-2020-5553 Code Injection vulnerability in Mailform 1.04
mailform version 1.04 allows remote attackers to execute arbitrary PHP code via unspecified vectors.
network
low complexity
mailform CWE-94
critical
10.0
2020-03-25 CVE-2020-5552 Cross-site Scripting vulnerability in Mailform 1.04
Cross-site scripting vulnerability in mailform version 1.04 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
mailform CWE-79
4.3