Unrated severityNVD Advisory· Published Sep 8, 2005· Updated Jun 16, 2026
CVE-2005-2854
CVE-2005-2854
Description
CRLF injection vulnerability in thesitewizard.com chfeedback.pl Feedback Form Perl Script 2.0.1 allows remote attackers to use the script as a mail relay (spam proxy) via CRLF sequences in the (1) name or (2) email fields, which are injected into mail headers.
Affected products
2cpe:2.3:a:thesitewizard.com:chfeedback.pl_feedback_form_perl_script:2.0.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:thesitewizard.com:chfeedback.pl_feedback_form_perl_script:2.0.1:*:*:*:*:*:*:*
- (no CPE)range: =2.0.1
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.