7.8
CVSSv2

CVE-2008-7012

Published: 19/08/2009 Updated: 17/08/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:N/I:C/A:N

Vulnerability Summary

courier/1000@/api_error_email.html (aka "error reporting page") in Accellion File Transfer Appliance FTA_7_0_178, and possibly other versions before FTA_7_0_189, allows remote malicious users to send spam e-mail via modified description and client_email parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

accellion secure file transfer appliance 7_0_135

accellion secure file transfer appliance

Exploits

source: wwwsecurityfocuscom/bid/31178/info Accellion File Transfer Appliance is prone to an open-email-relay vulnerability An attacker could exploit this issue by constructing a script that would send unsolicited spam to an unrestricted amount of email addresses from a forged email address This issue affects Accellion File Transfer Ap ...