CVE-2021-40377
08.09.2021, 11:15
SmarterTools SmarterMail 16.x before build 7866 has stored XSS. The application fails to sanitize email content, thus allowing one to inject HTML and/or JavaScript into a page that will then be processed and stored by the application.
Vendor | Product | Version |
---|---|---|
smartertools | smartermail | 16.0.6345 ≤ 𝑥 < 16.3.7866 |
𝑥
= Vulnerable software versions