← Back

CVE-2011-4554

nvd nist
Published: Dec 6, 2011Modified: Apr 29, 2026

JSON object

Loading...
5.5
Vector
AV:N/AC:L/Au:S/C:N/I:P/A:P
Exploitability: 8.0 / Impact: 4.9
Source: NVD

Description

One Click Orgs before 1.2.3 allows remote authenticated users to trigger crafted SMTP traffic via (1) " (double quote) and newline characters in an org name or (2) " (double quote) characters in an e-mail address, related to a "2nd Order SMTP Injection" issue.

Affected (7)

1 product
One Click Orgs
Configuration A
7 vulnerable
Vulnerable SoftwareAffected Versions
Oneclickorgs
Up to 1.2.2
Version 1.0.0
Version 1.0.1
Version 1.1.0
Version 1.1.1
Version 1.2.0
Version 1.2.1

Timeline

No history available yet.