CVE-2016-4803

Publication date

2016-06-30 17:00:00

Family

mitre

State

PUBLISHED

Description

CRLF injection vulnerability in the send email functionality in dotCMS before 3.3.2 allows remote attackers to inject arbitrary email headers via CRLF sequences in the subject.