Intrusion Prevention

FormMail.Flood.Servers.Anonymous.Email

Description

FormMail is a Web-based email gateway. FormMail.pl in FormMail 1.6 and earlier allows remote attacker to send anonymous email (spam) by modifying the recipient and message parameters.

Affected Products

FormMail version 1.0 to 1.6

Impact

Send email without any authentication.

Recommended Actions

Apply Anti-spam & Security fix for FormMail.pl
http://www.mailvalley.com/formmail/

CVE References

CVE-2001-0357