CVE-2007-4073

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/07/2007
Last modified:
09/04/2025

Description

Webbler CMS before 3.1.6 does not properly restrict use of "mail a friend" forms, which allows remote attackers to send arbitrary amounts of forged e-mail. NOTE: this could be leveraged for spam or phishing attacks.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:tincan:webbler_cms:*:*:*:*:*:*:*:* 3.1.4 (including)