5
CVSSv2

CVE-2005-1807

Published: 28/05/2005 Updated: 08/03/2011
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The Data function in class.smtp.php in PHPMailer 1.7.2 and previous versions allows remote malicious users to cause a denial of service (infinite loop leading to memory and CPU consumption) via a long header field.

Vulnerable Product Search on Vulmon Subscribe to Product

phpmailer phpmailer

Exploits

source: wwwsecurityfocuscom/bid/13805/info PHPMailer is affected by a remote denial-of-service vulnerability An attacker can send an email message with a malformed header field to initiate an infinite loop in the application This eventually leads to a crash due to resource exhaustion PHPMailer 172 and prior versions are affected by ...