Cgiemail
This hub aggregates every CVE we track for Cgiemail, a product in the operating systems space. Use it to gauge the current risk picture and drill into individual advisories.
5
CVEs tracked
0
Critical
2
High
0
In CISA KEV
Severity distribution
MEDIUM3HIGH2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 5 most recently published vulnerabilities affecting Cgiemail.
- CVE-2017-5615cgiemail and cgiecho allow remote attackers to inject HTTP headers via a newline character in the redirect location.6.1
- CVE-2017-5616Cross-site scripting (XSS) vulnerability in cgiemail and cgiecho allows remote attackers to inject arbitrary web script or HTML via the addendum parameter.6.1
- CVE-2017-5613Format string vulnerability in cgiemail and cgiecho allows remote attackers to execute arbitrary code via format string specifiers in a template file.7.8
- CVE-2002-1652Buffer overflow in cgicso.c for cgiemail 1.6 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long query parameter.7.5
- CVE-2002-1575cgiemail allows remote attackers to use cgiemail as a spam proxy via CRLF injection of encoded newline (%0a) characters in parameters such as "required-subject," which can be used to modify the CC,...5.0
Product normalization is registry-driven with AI assist and human review. How it works