formmail.php in Jetbox CMS 2.1 allows remote attackers to send arbitrary e-mails (spam) via modified recipient, _SETTINGS[allowed_email_hosts][], and subject parameters.
References
Configurations
Configuration 1 (hide)
| AND |
|
Information
Published : 2007-05-16 22:30
Updated : 2018-10-16 16:41
NVD link : CVE-2007-1898
Mitre link : CVE-2007-1898
JSON object : View
Products Affected
microsoft
- windows_2003_server
- windows_98
- windows_me
- windows_98se
- windows_2000
- windows_nt
- windows_xp
- windows_95
hp
- tru64
- hp-ux
linux
- linux_kernel
jetbox
- jetbox_cms
sun
- solaris
santa_cruz_operation
- sco_unix
apple
- mac_os_x
windriver
- bsdos
CWE
