CRLF injection vulnerability in FormMail.pl in Matt Wright FormMail 1.92, and possibly earlier, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the redirect parameter.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2009-05-22T20:00:00
Updated: 2024-08-07T05:27:54.764Z
Reserved: 2009-05-22T00:00:00
Link: CVE-2009-1777
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-05-22T20:30:00.767
Modified: 2018-10-10T19:38:17.597
Link: CVE-2009-1777
Redhat
No data.