Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-3348

Опубликовано: 18 нояб. 2005
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

HTTP response splitting vulnerability in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egroupware before 1.0.0.009, allows remote attackers to spoof web content and poison web caches via CRLF sequences in the charset parameter.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:phpsysinfo:phpsysinfo:2.0:*:*:*:*:*:*:*
cpe:2.3:a:phpsysinfo:phpsysinfo:2.1:*:*:*:*:*:*:*
cpe:2.3:a:phpsysinfo:phpsysinfo:2.3:*:*:*:*:*:*:*
cpe:2.3:a:phpsysinfo:phpsysinfo:2.4:*:*:*:*:*:*:*

EPSS

Процентиль: 81%
0.01621
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-352

Связанные уязвимости

ubuntu
почти 20 лет назад

HTTP response splitting vulnerability in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egroupware before 1.0.0.009, allows remote attackers to spoof web content and poison web caches via CRLF sequences in the charset parameter.

debian
почти 20 лет назад

HTTP response splitting vulnerability in index.php in phpSysInfo 2.4 a ...

github
больше 3 лет назад

HTTP response splitting vulnerability in index.php in phpSysInfo 2.4 and earlier, as used in phpgroupware 0.9.16 and earlier, and egroupware before 1.0.0.009, allows remote attackers to spoof web content and poison web caches via CRLF sequences in the charset parameter.

EPSS

Процентиль: 81%
0.01621
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-352