Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-27990 | Mailform Pro CGI prior to 4.3.4 generates error messages containing sensitive information, which may allow a remote unauthenticated attacker to obtain coupon codes. This vulnerability only affects products that use the coupon feature. |
Wed, 04 Jun 2025 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Synck
Synck mailform Pro Cgi |
|
| CPEs | cpe:2.3:a:synck:mailform_pro_cgi:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Synck
Synck mailform Pro Cgi |
|
| Metrics |
cvssV3_1
|
Tue, 27 May 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 26 May 2025 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Mailform Pro CGI prior to 4.3.4 generates error messages containing sensitive information, which may allow a remote unauthenticated attacker to obtain coupon codes. This vulnerability only affects products that use the coupon feature. | |
| Weaknesses | CWE-209 | |
| References |
| |
| Metrics |
cvssV3_0
|
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-05-27T13:38:28.814Z
Reserved: 2025-05-21T06:48:52.882Z
Link: CVE-2025-41441
Updated: 2025-05-27T13:37:32.155Z
Status : Analyzed
Published: 2025-05-26T07:15:25.753
Modified: 2025-06-03T15:42:40.710
Link: CVE-2025-41441
No data.
OpenCVE Enrichment
No data.
EUVD