Mailster vulnerable to Cross-site Scripting (XSS) Attacks
CVE-2024-30503
6.1MEDIUM
What is CVE-2024-30503?
A reflected Cross-site Scripting (XSS) vulnerability exists in EverPress Mailster, which occurs due to improper neutralization of input during web page generation. This vulnerability allows attackers to execute arbitrary scripts in the context of the user's browser, leading to potential data theft and session hijacking. The affected versions range from n/a to 4.0.6, making it critical for users to ensure their installations are updated to mitigate this security risk.
Affected Version(s)
Mailster <= 4.0.6