7.5
CVSSv2

CVE-2001-1188

Published: 11/12/2001 Updated: 05/09/2008
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

mailto.exe in Brian Dorricott MAILTO 1.0.9 and previous versions allows remote malicious users to send SPAM e-mail through remote servers by modifying the sendto, email, server, subject, and resulturl hidden form fields.

Vulnerable Product Search on Vulmon Subscribe to Product

brian dorricott mailto 1.0.7

brian dorricott mailto 1.0.8

brian dorricott mailto 1.0.9

Exploits

source: wwwsecurityfocuscom/bid/3669/info MAILTO is a program maintained by Brian Dorricott It enables web servers to allow forms to be converted into mail messages that can be sent to numerous recipients An issue exists in MAILTO which could allow an attacker to send emails through a remote host's server Sites that utilize or provid ...