CRLF injection vulnerability in the mb_send_mail function in PHP before 5.1.0 might allow remote attackers to inject arbitrary e-mail headers via line feeds (LF) in the "To" address argument.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-11-29 03:03
Updated : 2018-10-30 09:25
NVD link : CVE-2005-3883
Mitre link : CVE-2005-3883
JSON object : View
CWE
Products Affected
php
- php