Unspecified vulnerability in CGI-RESCUE FORM2MAIL 1.21 and earlier allows remote attackers to inject email headers, which facilitates sending spam messages. NOTE: the details for this issue are obtained from third party information.
https://exchange.xforce.ibmcloud.com/vulnerabilities/27130
http://www.vupen.com/english/advisories/2006/2234
http://www.securityfocus.com/bid/18434
http://www.rescue.ne.jp/whatsnew/blog.cgi/permalink/20060216124645