Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-65mh-gj85-793w

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

CRLF injection vulnerability in process_signup.php in PHP Handicapper allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in the login parameter. NOTE: the vendor has disputed CVE-2005-3497, and it is possible that the dispute was intended to include this issue as well.

CRLF injection vulnerability in process_signup.php in PHP Handicapper allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in the login parameter. NOTE: the vendor has disputed CVE-2005-3497, and it is possible that the dispute was intended to include this issue as well.

EPSS

Процентиль: 60%
0.00397
Низкий

Связанные уязвимости

nvd
около 20 лет назад

CRLF injection vulnerability in process_signup.php in PHP Handicapper allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in the login parameter. NOTE: the vendor has disputed CVE-2005-3497, and it is possible that the dispute was intended to include this issue as well.

EPSS

Процентиль: 60%
0.00397
Низкий