Vulnerabilities > Hastymail > Hastymail > 1.2

DATE CVE VULNERABILITY TITLE RISK
2006-10-17 CVE-2006-5313 Improper Input Validation vulnerability in Hastymail
Hastymail 1.5 and earlier before 20061008 allows remote authenticated users to send arbitrary SMTP commands by placing them after a CRLF.CRLF sequence in the smtp_message parameter.
network
low complexity
hastymail CWE-20
6.5
2006-10-12 CVE-2006-5262 Unspecified vulnerability in Hastymail
CRLF injection vulnerability in lib/session.php in Hastymail 1.5 and earlier before 20061008 allows remote authenticated users to send arbitrary IMAP commands via a CRLF sequence in a mailbox name.
network
low complexity
hastymail
6.5