Description
CRLF injection vulnerability in the send email functionality in dotCMS before 3.3.2 allows remote attackers to inject arbitrary email headers via CRLF sequences in the subject.
Remediation
References
Related Vulnerabilities
WordPress Plugin Ooorl Cross-Site Scripting (1.0.0)
Java Unspesificed Vulnerability (CVE-2018-2964)
Apache Tomcat Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2015-5351)
Oracle Database Server CVE-2015-4863 Vulnerability (CVE-2015-4863)
WordPress Plugin Easy Registration Forms Cross-Site Request Forgery (2.1.1)