CVE Vulnerabilities

CVE-2007-1898

Published: May 16, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

formmail.php in Jetbox CMS 2.1 allows remote attackers to send arbitrary e-mails (spam) via modified recipient, _SETTINGS[allowed_email_hosts][], and subject parameters.

Affected Software

NameVendorStart VersionEnd Version
Mac_os_xApple**
Hp-uxHp**
Tru64Hp**
Linux_kernelLinux**
Windows_2000Microsoft**
Windows_2003_serverMicrosoft**
Windows_95Microsoft**
Windows_98Microsoft**
Windows_98seMicrosoft**
Windows_meMicrosoft**
Windows_ntMicrosoft4.0 (including)4.0 (including)
Windows_xpMicrosoft**
Sco_unixSanta_cruz_operation**
SolarisSun**
BsdosWindriver**

References