CRLF injection vulnerability in formmail.php in Jetbox CMS 2.1 might allow remote attackers to inject arbitrary e-mail headers via LF (%0A) sequences in the subject parameter, a related issue to CVE-2007-1898.
References
Configurations
History
No history.
Information
Published : 2007-05-16 22:30
Updated : 2018-10-16 16:45
NVD link : CVE-2007-2731
Mitre link : CVE-2007-2731
CVE.ORG link : CVE-2007-2731
JSON object : View
Products Affected
jetbox
- jetbox_cms
CWE