CRLF injection vulnerability in bizmail.cgi in Biz Mail Form before 2.2 allows remote attackers to bypass the email check and send spam e-mail via CRLF sequences and forged mail headers in the email parameter.
From 神龙GPT (AIGC)
在2.2之前的 Biz Mail Form 中的 bizmail.cgi 中的 CRLF 注入漏洞允许远程攻击者绕过电子邮件检查,并通过 CRLF 序列和电子邮件参数中的伪造邮件头发送垃圾电子邮件。