CVE-2014-9182
02.12.2014, 18:59
models/comment.php in Anchor CMS 0.9.2 and earlier allows remote attackers to inject arbitrary headers into mail messages via a crafted Host: header.
Vendor | Product | Version |
---|---|---|
anchorcms | anchor_cms | 𝑥 ≤ 0.9.2 |
anchorcms | anchor_cms | 0.9.1 |
𝑥
= Vulnerable software versions