Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h836-xp2g-fcpr

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

CRLF injection vulnerability in inc/function.php in MyBulletinBoard (MyBB) 1.04 allows remote attackers to conduct cross-site scripting (XSS), poison caches, or hijack pages via CRLF (%0A%0D) sequences in the Referrer HTTP header field, possibly when redirecting to other web pages.

CRLF injection vulnerability in inc/function.php in MyBulletinBoard (MyBB) 1.04 allows remote attackers to conduct cross-site scripting (XSS), poison caches, or hijack pages via CRLF (%0A%0D) sequences in the Referrer HTTP header field, possibly when redirecting to other web pages.

EPSS

Процентиль: 71%
0.00674
Низкий

Связанные уязвимости

nvd
почти 20 лет назад

CRLF injection vulnerability in inc/function.php in MyBulletinBoard (MyBB) 1.04 allows remote attackers to conduct cross-site scripting (XSS), poison caches, or hijack pages via CRLF (%0A%0D) sequences in the Referrer HTTP header field, possibly when redirecting to other web pages.

EPSS

Процентиль: 71%
0.00674
Низкий