Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-98v6-784f-9j89

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

cgiemail allows remote attackers to use cgiemail as a spam proxy via CRLF injection of encoded newline (%0a) characters in parameters such as "required-subject," which can be used to modify the CC, BCC, and other header fields in the generated email message.

cgiemail allows remote attackers to use cgiemail as a spam proxy via CRLF injection of encoded newline (%0a) characters in parameters such as "required-subject," which can be used to modify the CC, BCC, and other header fields in the generated email message.

EPSS

Процентиль: 66%
0.00524
Низкий

Связанные уязвимости

nvd
больше 21 года назад

cgiemail allows remote attackers to use cgiemail as a spam proxy via CRLF injection of encoded newline (%0a) characters in parameters such as "required-subject," which can be used to modify the CC, BCC, and other header fields in the generated email message.

debian
больше 21 года назад

cgiemail allows remote attackers to use cgiemail as a spam proxy via C ...

EPSS

Процентиль: 66%
0.00524
Низкий