CVE-2014-3894

PHP Kobo Multifunctional MailForm Free <2014-01-28 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in PHP Kobo Multifunctional MailForm Free 2014/1/28 and earlier allows remote attackers to inject arbitrary web script or HTML via an HTTP Referer header.

Scores

EPSS 0.0025
EPSS Percentile 47.9%

Details

CWE
CWE-79
Status published
Products (2)
php_kobo/multifunctional_mailform_free < -
n/a/n/a
Published Jul 20, 2014
Tracked Since Feb 18, 2026