Matt Wright / Formmail
6 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2009-1777 | CRLF injection vulnerability in FormMail.pl in Matt Wright FormMail 1.92, and possibly earlier, allows remote attackers to inject arbitrary HTTP headers and co… | MEDIUM | 5.0 | May 22, 2009 |
| CVE-2009-1776 | Multiple cross-site scripting (XSS) vulnerabilities in FormMail.pl in Matt Wright FormMail 1.92, and possibly earlier, allow remote attackers to inject arbitra… | MEDIUM | 4.3 | May 22, 2009 |
| CVE-2002-2109 | Matt Wright FormMail 1.9 and earlier allows remote attackers to bypass the HTTP_REFERER check and conduct unauthorized activities via (1) a blank referer, (2)… | HIGH | 7.5 | Aug 5, 2005 |
| CVE-2002-1771 | Matt Wright FormMail 1.9 and earlier allows remote attackers to send spam or anonymous e-mail by injecting a newline character followed by CC:, BCC:, or additi… | MEDIUM | 5.0 | Jun 21, 2005 |
| CVE-2001-0357 | FormMail.pl in FormMail 1.6 and earlier allows a remote attacker to send anonymous email (spam) by modifying the recipient and message parameters. | HIGH | 7.5 | Jul 27, 2001 |
| CVE-2000-0411 | Matt Wright's FormMail CGI script allows remote attackers to obtain environmental variables via the env_report parameter. | MEDIUM | 5.0 | Jul 12, 2000 |
Showing 1 to 6 of 6 CVEs