SYNCK GRAPHICA Mailform Pro CGI
cpe:2.3:a:synck_graphica:mailform_pro_cgi:*:*:*:*:*:*:*
- < 4.3.4
A vulnerability exists in Mailform Pro CGI versions prior to 4.3.4, provided by SYNCK GRAPHICA. This issue arises from the generation of error messages that inadvertently disclose sensitive information, specifically coupon codes. The vulnerability is present only in products that utilize the coupon feature.
Exploitation of this vulnerability allows remote unauthenticated attackers to obtain coupon codes.
Users are advised to update Mailform Pro CGI to version 4.3.4 or later. For those using the coupon feature, the updated files can be downloaded from the Mailform Pro download page.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.