CVE Vulnerabilities

CVE-2007-1898

Published: May 16, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

formmail.php in Jetbox CMS 2.1 allows remote attackers to send arbitrary e-mails (spam) via modified recipient, _SETTINGS[allowed_email_hosts][], and subject parameters.

Affected Software

Name Vendor Start Version End Version
Mac_os_x Apple * *
Hp-ux Hp * *
Tru64 Hp * *
Linux_kernel Linux * *
Windows_2000 Microsoft * *
Windows_2003_server Microsoft * *
Windows_95 Microsoft * *
Windows_98 Microsoft * *
Windows_98se Microsoft * *
Windows_me Microsoft * *
Windows_nt Microsoft 4.0 (including) 4.0 (including)
Windows_xp Microsoft * *
Sco_unix Santa_cruz_operation * *
Solaris Sun * *
Bsdos Windriver * *

References