5.8
CVE-2007-1898
- EPSS 2.88%
- Veröffentlicht 16.05.2007 22:30:00
- Zuletzt bearbeitet 16.06.2026 22:38:31
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
formmail.php in Jetbox CMS 2.1 allows remote attackers to send arbitrary e-mails (spam) via modified recipient, _SETTINGS[allowed_email_hosts][], and subject parameters.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Jetbox ≫ Jetbox Cms Version2.1
Apple ≫ macOS X
Hp ≫ Hp-ux
Hp ≫ Tru64
Linux ≫ Linux Kernel
Microsoft ≫ Windows 2000
Microsoft ≫ Windows 2003 Server
Microsoft ≫ Windows 95
Microsoft ≫ Windows 98 Updategold
Microsoft ≫ Windows 98se
Microsoft ≫ Windows Me
Microsoft ≫ Windows Nt Version4.0
Microsoft ≫ Windows Xp
Santa Cruz Operation ≫ Sco Unix
Sun ≫ Solaris
Windriver ≫ Bsdos
Hp ≫ Hp-ux
Hp ≫ Tru64
Linux ≫ Linux Kernel
Microsoft ≫ Windows 2000
Microsoft ≫ Windows 2003 Server
Microsoft ≫ Windows 95
Microsoft ≫ Windows 98 Updategold
Microsoft ≫ Windows 98se
Microsoft ≫ Windows Me
Microsoft ≫ Windows Nt Version4.0
Microsoft ≫ Windows Xp
Santa Cruz Operation ≫ Sco Unix
Sun ≫ Solaris
Windriver ≫ Bsdos
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.88% | 0.85 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.8 | 8.6 | 4.9 |
AV:N/AC:M/Au:N/C:P/I:P/A:N
|
http://securityreason.com/securityalert/2710
http://www.netvigilance.com/advisory0026
http://www.osvdb.org/34088
http://www.securityfocus.com/archive/1/468644/100/0/threaded
http://www.securityfocus.com/bid/23989
http://www.securitytracker.com/id?1018063
http://www.vupen.com/english/advisories/2007/1831
https://exchange.xforce.ibmcloud.com/vulnerabilities/34292