CVE-2017-9801
07.08.2017, 15:29
When a call-site passes a subject for an email that contains line-breaks in Apache Commons Email 1.0 through 1.4, the caller can add arbitrary SMTP headers.Enginsight
Vendor | Product | Version |
---|---|---|
apache | commons_email | 1.0 |
apache | commons_email | 1.1 |
apache | commons_email | 1.2 |
apache | commons_email | 1.3 |
apache | commons_email | 1.3.1 |
apache | commons_email | 1.3.2 |
apache | commons_email | 1.3.3 |
apache | commons_email | 1.4 |
𝑥
= Vulnerable software versions

Debian Releases
Common Weakness Enumeration
References