Vulnerabilities > Matt Wright > Formmail > 1.92

DATE CVE VULNERABILITY TITLE RISK
2009-05-22 CVE-2009-1777 Improper Input Validation vulnerability in Matt Wright Formmail 1.92
CRLF injection vulnerability in FormMail.pl in Matt Wright FormMail 1.92, and possibly earlier, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the redirect parameter.
network
low complexity
matt-wright CWE-20
5.0