Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-1087

Опубликовано: 07 апр. 2005
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

CRLF injection vulnerability in the cmdIS.DLL plugin for AN HTTPD Server 1.42n allows remote attackers to spoof or hide entries in the logfile, and possibly read files using an injected type command, via CRLF sequences in an HTTP request.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:an:an-httpd:1.42n:*:*:*:*:*:*:*

EPSS

Процентиль: 81%
0.02288
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 4 лет назад

CRLF injection vulnerability in the cmdIS.DLL plugin for AN HTTPD Server 1.42n allows remote attackers to spoof or hide entries in the logfile, and possibly read files using an injected type command, via CRLF sequences in an HTTP request.

EPSS

Процентиль: 81%
0.02288
Низкий

6.4 Medium

CVSS2

Дефекты

NVD-CWE-Other