Feedback Form Perl Script CHFeedBack.PL Unauthorized Mail Relay Vulnerability

chfeedback.pl is prone to a vulnerability that allows the application to be abused as a mail relay.

An attacker can exploit this issue to inject arbitrary SMTP headers by using CR and LF sequences.

If successful, it becomes possible to abuse the application as a mail relay. Email may be sent to arbitrary computers. This could be exploited by spammers or other malicious parties.


 

Privacy Statement
Copyright 2010, SecurityFocus