CVE-2004-0259
N/A
N/A
Summary
The check_referer() function in Formmail.php 5.0 and earlier allows remote attackers to bypass access restrictions via an empty or spoofed HTTP Referer, as demonstrated using an application on the same web server that contains a cross-site scripting (XSS) issue.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://marc.info/?l=bugtraq&m=107619109629629&w=2
- http://www.securityfocus.com/bid/9591
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15079
References
- http://marc.info/?l=bugtraq&m=107619109629629&w=2
- http://www.securityfocus.com/bid/9591
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15079
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.