cleantalk
Vulnerabilities and Security Researches

WP Mailster, CVE-2021-28975

CVE, Research URL

CVE-2021-28975

Application

WP Mailster

Published on
Oct 21, 2021
Research Description
WP Mailster 1.6.18.0 allows XSS when a victim opens a mail server's details in the mst_servers page, for a crafted server_host, server_name, or connection_parameter parameter.
Affected versions
Min -, max 1.5.5.
Status
vulnerable