Vulnerabilities (CVE)

Filtered by vendor Dotdeb Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-7087 1 Dotdeb 1 Dotdeb Php 2024-02-28 5.0 MEDIUM N/A
CRLF injection vulnerability in the mail function in Dotdeb PHP before 5.2.0 Rev 3 allows remote attackers to bypass the protection scheme and inject arbitrary email headers via CRLF sequences in the query string, which is processed via the PHP_SELF variable.