Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-3982

Опубликовано: 04 дек. 2005
Источник: nvd
CVSS2: 5
EPSS Средний

Описание

CRLF injection vulnerability in layers_toggle.php in WebCalendar 1.0.1 might allow remote attackers to modify HTTP headers and conduct HTTP response splitting attacks via the ret parameter, which is used to redirect URL requests.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:webcalendar:webcalendar:1.0.1:*:*:*:*:*:*:*

EPSS

Процентиль: 95%
0.16479
Средний

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
почти 20 лет назад

CRLF injection vulnerability in layers_toggle.php in WebCalendar 1.0.1 might allow remote attackers to modify HTTP headers and conduct HTTP response splitting attacks via the ret parameter, which is used to redirect URL requests.

debian
почти 20 лет назад

CRLF injection vulnerability in layers_toggle.php in WebCalendar 1.0.1 ...

github
больше 3 лет назад

CRLF injection vulnerability in layers_toggle.php in WebCalendar 1.0.1 might allow remote attackers to modify HTTP headers and conduct HTTP response splitting attacks via the ret parameter, which is used to redirect URL requests.

EPSS

Процентиль: 95%
0.16479
Средний

5 Medium

CVSS2

Дефекты

NVD-CWE-Other