Summary
Matt Wright's Formmail CGI is installed on the remote host.
The product exposes its version number, and in addition, early versions of the product suffered from security vulnerabilities, which include: allowing SPAM, file disclosure, environment variable disclosure, and more.
Solution
Upgrade to the latest version.
Additional information:
http://www.securiteam.com/cgi-bin/htsearch?config=htdigSecuriTeam&words=Formmail
Severity
Classification
-
CVE CVE-2001-0357 -
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities