CRLF injection vulnerability in bizmail.cgi in Biz Mail Form before 2.2 allows remote attackers to bypass the email check and send spam e-mail via CRLF sequences and forged mail headers in the email parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Biz_mail_form | Seth_m._knorr | * | 2.1 (including) |