CVE-2007-1713
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/03/2007
Last modified:
09/04/2025
Description
CRLF injection vulnerability in BSMTP.DLL in B21Soft BASP21 2003.0211, and BASP21 Pro 1.0.702.27 and earlier, allows remote attackers to inject arbitrary headers into e-mail messages via CRLF sequences in Subject lines.
Impact
Base Score 2.0
6.40
Severity 2.0
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:b21soft:basp21:*:*:pro:*:*:*:*:* | 1.0.702.27 (including) | |
| cpe:2.3:a:b21soft:basp21:2003.0211:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://jvn.jp/jp/JVN%2386092776/index.html
- http://osvdb.org/34495
- http://secunia.com/advisories/24652
- http://www.hi-ho.ne.jp/babaq/basp21.html
- http://www.securityfocus.com/bid/23134
- http://www.vupen.com/english/advisories/2007/1113
- https://exchange.xforce.ibmcloud.com/vulnerabilities/33211
- http://jvn.jp/jp/JVN%2386092776/index.html
- http://osvdb.org/34495
- http://secunia.com/advisories/24652
- http://www.hi-ho.ne.jp/babaq/basp21.html
- http://www.securityfocus.com/bid/23134
- http://www.vupen.com/english/advisories/2007/1113
- https://exchange.xforce.ibmcloud.com/vulnerabilities/33211



