CVE-2006-4344

CRLF injection vulnerability in CGI-Rescue Mail F/W System (formd) before 8.3 allows remote attackers to spoof e-mails and inject e-mail headers via unspecified vectors in (1) mail.cgi and (2) query.cgi.
Configurations

Configuration 1 (hide)

cpe:2.3:a:cgi-rescue:mail_f_w_system:8.3:*:*:*:*:*:*:*

History

21 Nov 2024, 00:15

Type Values Removed Values Added
References () http://jvn.jp/jp/JVN%2311048526/index.html - Patch () http://jvn.jp/jp/JVN%2311048526/index.html - Patch
References () http://secunia.com/advisories/21543 - Patch, Vendor Advisory () http://secunia.com/advisories/21543 - Patch, Vendor Advisory
References () http://www.osvdb.org/28131 - Patch () http://www.osvdb.org/28131 - Patch
References () http://www.rescue.ne.jp/whatsnew/blog.cgi/permalink/20060822210549 - Patch () http://www.rescue.ne.jp/whatsnew/blog.cgi/permalink/20060822210549 - Patch
References () http://www.securityfocus.com/bid/19676 - Patch () http://www.securityfocus.com/bid/19676 - Patch
References () http://www.vupen.com/english/advisories/2006/3359 - () http://www.vupen.com/english/advisories/2006/3359 -

Information

Published : 2006-08-24 20:04

Updated : 2024-11-21 00:15


NVD link : CVE-2006-4344

Mitre link : CVE-2006-4344

CVE.ORG link : CVE-2006-4344


JSON object : View

Products Affected

cgi-rescue

  • mail_f_w_system