Skip to main content

Vendor/product archive

mit / cgiemail CVEs

Beta · best-effort

2 CVEs tagged to mit / cgiemail0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2002-1575

Published Mar 3, 2004

cgiemail allows remote attackers to use cgiemail as a spam proxy via CRLF injection of encoded newline (%0a) characters in parameters such as "required-subject," which can be used…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-1652

Published Dec 31, 2002

Buffer overflow in cgicso.c for cgiemail 1.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long query parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1