RSS   Vulnerabilities for 'Csmailto'   RSS

2002-08-12
 
CVE-2002-0752

 

 
CGIscript.net csMailto.cgi program exports feedback to a file that is accessible from the web document root, which could allow remote attackers to obtain sensitive information by directly accessing the file.

 
 
CVE-2002-0751

 

 
CGIscript.net csMailto.cgi program allows remote attackers to use csMailto as a "spam proxy" and send mail to arbitrary users via modified (1) form-to, (2) form-from, and (3) form-results parameters.

 
 
CVE-2002-0750

 

 
CGIscript.net csMailto.cgi program allows remote attackers to read arbitrary files by specifying the target filename in the form-attachment field.

 
 
CVE-2002-0749

 

 
CGIscript.net csMailto.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the form-attachment field.

 

 >>> Vendor: Cgiscript.net 9 Products
Cssearch
Csmailto
Cspassword
Csnews
Csguestbook
Cslivesupport
Cschat-r-box
Csnewspro
Csfaq


Copyright 2024, cxsecurity.com

 

Back to Top