445
VMScore

CVE-2017-9801

Published: 07/08/2017 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

When a call-site passes a subject for an email that contains line-breaks in Apache Commons Email 1.0 up to and including 1.4, the caller can add arbitrary SMTP headers.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache commons email 1.3.3

apache commons email 1.2

apache commons email 1.4

apache commons email 1.3.2

apache commons email 1.0

apache commons email 1.3.1

apache commons email 1.3

apache commons email 1.1