CVE-2013-3649

Cross-site scripting (XSS) vulnerability in KENT-WEB CLIP-MAIL before 3.4, when Internet Explorer 7 or earlier is used, allows remote attackers to inject arbitrary web script or HTML via an unspecified form field.

Date published : 2013-06-28

http://www.kent-web.com/mail/clipmail.html

http://jvn.jp/en/jp/JVN85804149/index.html