Описание
CRLF injection vulnerability in (1) index.php and (2) admin.php in myWebland MyBloggie 2.1.3 allows remote attackers to hijack sessions and conduct cross-site scripting (XSS) attacks via a cookie.
CRLF injection vulnerability in (1) index.php and (2) admin.php in myWebland MyBloggie 2.1.3 allows remote attackers to hijack sessions and conduct cross-site scripting (XSS) attacks via a cookie.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-3903
- https://exchange.xforce.ibmcloud.com/vulnerabilities/26484
- http://lists.grok.org.uk/pipermail/full-disclosure/2006-May/046094.html
- http://marc.info/?l=bugtraq&m=114791192612460&w=2
- http://www.osvdb.org/displayvuln.php?osvdb_id=26557
- http://www.osvdb.org/displayvuln.php?osvdb_id=26558
- http://www.securityfocus.com/archive/1/441356/100/0/threaded
EPSS
Процентиль: 74%
0.0082
Низкий
CVE ID
Связанные уязвимости
nvd
больше 19 лет назад
CRLF injection vulnerability in (1) index.php and (2) admin.php in myWebland MyBloggie 2.1.3 allows remote attackers to hijack sessions and conduct cross-site scripting (XSS) attacks via a cookie.
EPSS
Процентиль: 74%
0.0082
Низкий