GI LogoGI Logo
  • Anmelden
Digitale Bibliothek
    • Gesamter Bestand

      • Bereiche & Sammlungen
      • Titel
      • Autor
      • Erscheinungsdatum
      • Schlagwort
    • Diese Sammlung

      • Titel
      • Autor
      • Erscheinungsdatum
      • Schlagwort
Digital Bibliothek der Gesellschaft für Informatik e.V.
GI-DL
    • English
    • Deutsch
  • Deutsch 
    • English
    • Deutsch
Dokumentanzeige 
  •   Startseite
  • Fachbereiche
  • Informatik in den Lebenswissenschaften (ILW)
  • it - Information Technology
  • it - Information Technology 59(2) - April 2017
  • Dokumentanzeige
JavaScript is disabled for your browser. Some features of this site may not work without it.
  •   Startseite
  • Fachbereiche
  • Informatik in den Lebenswissenschaften (ILW)
  • it - Information Technology
  • it - Information Technology 59(2) - April 2017
  • Dokumentanzeige

E-mail Header Injection Vulnerabilities

Autor(en):
Chandramouli, Sai Prashanth [DBLP] ;
Zhao, Ziming [DBLP] ;
Doupé, Adam [DBLP] ;
Ahn, Gail-Joon [DBLP]
Zusammenfassung
E-mail Header Injection vulnerability is a class of vulnerability that can occur in web applications that use user input to construct e-mail messages. E-mail Header Injection is possible when the mailing script fails to check for the presence of e-mail headers in user input (either form fields or URL parameters). The vulnerability exists in the reference implementation of the built-in mail functionality in popular languages such as PHP, Java, Python, and Ruby. With the proper injection string, this vulnerability can be exploited to inject additional headers, modify existing headers, and alter the content of the e-mail.
  • Vollständige Referenz
  • BibTeX
Chandramouli, S. P., Zhao, Z., Doupé, A. & Ahn, G.-J., (2017). E-mail Header Injection Vulnerabilities.   it - Information Technology: Vol. 59, No. 5. Berlin: De Gruyter. (S. 67). DOI: 10.1515/itit-2016-0039
@article{mci/Chandramouli2017,
author = {Chandramouli, Sai Prashanth AND Zhao, Ziming AND Doupé, Adam AND Ahn, Gail-Joon},
title = {E-mail Header Injection Vulnerabilities},
journal = {it - Information Technology},
volume = {59},
number = {5},
year = {2017},
,
pages = { 67 } ,
doi = { 10.1515/itit-2016-0039 }
}

Sollte hier kein Volltext (PDF) verlinkt sein, dann kann es sein, dass dieser aus verschiedenen Gruenden (z.B. Lizenzen oder Copyright) nur in einer anderen Digital Library verfuegbar ist. Versuchen Sie in diesem Fall einen Zugriff ueber die verlinkte DOI: 10.1515/itit-2016-0039

Haben Sie fehlerhafte Angaben entdeckt? Sagen Sie uns Bescheid: Feedback abschicken

Mehr Information

DOI: 10.1515/itit-2016-0039
ISSN: 1611-2776
Datum: 2017
Sprache: en (en)
Typ: Text/Journal Article

Keywords

  • E-mail Header Injection
  •  software security
Sammlungen
  • it - Information Technology 59(2) - April 2017 [7]

Zur Langanzeige


Über uns | FAQ | Hilfe | Impressum | Datenschutz

Gesellschaft für Informatik e.V. (GI), Kontakt: Geschäftsstelle der GI
Diese Digital Library basiert auf DSpace.

 

 


Über uns | FAQ | Hilfe | Impressum | Datenschutz

Gesellschaft für Informatik e.V. (GI), Kontakt: Geschäftsstelle der GI
Diese Digital Library basiert auf DSpace.