CVE-2007-1898
5.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:N
Exploitability: 8.6 / Impact: 4.9
Source: NVD
Description
formmail.php in Jetbox CMS 2.1 allows remote attackers to send arbitrary e-mails (spam) via modified recipient, _SETTINGS[allowed_email_hosts][], and subject parameters.
Affected (1)
Products: Jetbox: Jetbox Cms
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 2.1 |
| Running on/with | Platform Versions |
|---|---|
Apple Mac Os X | All versions |
Hp Hp Ux | All versions |
Hp Tru64 | All versions |
Linux Linux Kernel | All versions |
Microsoft Windows 2000 | All versions |
Microsoft Windows 2003 Server | All versions |
Microsoft Windows 95 | All versions |
Microsoft Windows 98 | All versions |
Microsoft Windows 98se | All versions |
Microsoft Windows Me | All versions |
Microsoft Windows Nt | Version 4.0 |
Microsoft Windows Xp | All versions |
Santa Cruz Operation Sco Unix | All versions |
Sun Solaris | All versions |
Windriver Bsdos | All versions |
References (16)
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: cve@mitre.org
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Timeline
No history available yet.