VendorsCgiscript.netcsmailtoall versions
Vulnerabilities

Cgiscript.net Csmailto

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2002-0749
CGIscript.net csMailto.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the form-attachment field.
Published 2002-07-26 · Modified
7.51 PoCEPSS 0.110
CVE-2002-0751
CGIscript.net csMailto.cgi program allows remote attackers to use csMailto as a "spam proxy" and send mail to arbitrary users via modified (1) form-to, (2) form-from, and (3) form-results parameters.
Published 2002-07-26 · Modified
7.5EPSS 0.027
CVE-2002-0750
CGIscript.net csMailto.cgi program allows remote attackers to read arbitrary files by specifying the target filename in the form-attachment field.
Published 2002-07-26 · Modified
5.0EPSS 0.021
CVE-2002-0752
CGIscript.net csMailto.cgi program exports feedback to a file that is accessible from the web document root, which could allow remote attackers to obtain sensitive information by directly accessing the file.
Published 2002-07-26 · Modified
5.0EPSS 0.020