vendor:
HiFriend
by:
Perforin
4.3
CVSS
MEDIUM
Open Email Relay Vulnerability
601
CWE
Product Name: HiFriend
Affected Version From: The free one you get from many webpages
Affected Version To: The free one you get from many webpages
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2008
HiFriend Open Email Relay Vulnerability
An attacker could exploit this issue by constructing a script that would send unsolicited bulk email to an unrestricted amount of email addresses with a forged email address.
Mitigation:
Restrict access to the vulnerable script and ensure that it is not accessible from the Internet.