CRLF injection vulnerability in the send email functionality in dotCMS before 3.3.2 allows remote attackers to inject arbitrary email headers via CRLF sequences in the subject.
References
Configurations
Information
Published : 2016-06-30 10:59
Updated : 2016-11-28 12:21
NVD link : CVE-2016-4803
Mitre link : CVE-2016-4803
JSON object : View
CWE
Products Affected
dotcms
- dotcms