formmail.php in Jetbox CMS 2.1 allows remote attackers to send arbitrary e-mails (spam) via modified recipient, _SETTINGS[allowed_email_hosts][], and subject parameters.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2007-05-16 15:30
Updated : 2018-10-16 09:41
NVD link : CVE-2007-1898
Mitre link : CVE-2007-1898
JSON object : View
CWE
Products Affected
microsoft
- windows_2003_server
- windows_98se
- windows_98
- windows_nt
- windows_95
- windows_xp
- windows_2000
- windows_me
jetbox
- jetbox_cms
sun
- solaris
windriver
- bsdos
hp
- tru64
- hp-ux
santa_cruz_operation
- sco_unix
linux
- linux_kernel
apple
- mac_os_x