The reportpost action in misc.php for PhotoPost PHP 5.0 RC3 does not limit the logging data that is sent to the administrator, which allows remote attackers to send large amounts of email to the administrator.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-03-20T05:00:00

Updated: 2024-08-07T21:28:27.859Z

Reserved: 2005-03-20T00:00:00

Link: CVE-2005-0775

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2005-05-02T04:00:00.000

Modified: 2017-07-11T01:32:23.967

Link: CVE-2005-0775

cve-icon Redhat

No data.