CVE
- Id
- 3992
- CVE No.
- CVE-2001-1188
- Status
- Candidate
- Description
- mailto.exe in Brian Dorricott MAILTO 1.0.9 and earlier allows remote attackers to send SPAM e-mail through remote servers by modifying the sendto, email, server, subject, and resulturl hidden form fields.
- Phase
- Proposed (20020315)
- Votes
- ACCEPT(1) Green | MODIFY(1) Frech | NOOP(4) Cole, Foat, Wall, Ziese
- Comments
- Frech> XF:mailto-form-field-modify(9119)