CRLF injection vulnerability in the send email functionality in dotCMS before 3.3.2 allows remote attackers to inject arbitrary email headers via CRLF sequences in the subject.
References
Configurations
History
No history.
Information
Published : 2016-06-30 17:59
Updated : 2024-02-04 18:53
NVD link : CVE-2016-4803
Mitre link : CVE-2016-4803
CVE.ORG link : CVE-2016-4803
JSON object : View
Products Affected
dotcms
- dotcms
CWE