CRLF injection vulnerability in formmail.php in Jetbox CMS 2.1 might allow remote attackers to inject arbitrary e-mail headers via LF (%0A) sequences in the subject parameter, a related issue to CVE-2007-1898.
References
Configurations
Information
Published : 2007-05-16 15:30
Updated : 2018-10-16 09:45
NVD link : CVE-2007-2731
Mitre link : CVE-2007-2731
JSON object : View
CWE
Products Affected
jetbox
- jetbox_cms