CVE-2016-4803
EUVD-2016-578630.06.2016, 17:59
CRLF injection vulnerability in the send email functionality in dotCMS before 3.3.2 allows remote attackers to inject arbitrary email headers via CRLF sequences in the subject.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| dotcms | dotcms | 𝑥 ≤ 3.3.1 |
𝑥
= Vulnerable software versions
References