Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rvv8-qh93-67vj

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

CRLF injection vulnerability in Open-Xchange AppSuite before 7.2.2, when using AJP in certain conditions, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the ajax/defer servlet.

CRLF injection vulnerability in Open-Xchange AppSuite before 7.2.2, when using AJP in certain conditions, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the ajax/defer servlet.

EPSS

Процентиль: 47%
0.00245
Низкий

Дефекты

CWE-94

Связанные уязвимости

nvd
больше 12 лет назад

CRLF injection vulnerability in Open-Xchange AppSuite before 7.2.2, when using AJP in certain conditions, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the ajax/defer servlet.

EPSS

Процентиль: 47%
0.00245
Низкий

Дефекты

CWE-94