Описание
CRLF injection vulnerability in bs_disp_as_mime_type.php in the BLOB streaming feature in phpMyAdmin before 3.1.3.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the (1) c_type and possibly (2) file_type parameters.
Релиз | Статус | Примечание |
---|---|---|
dapper | not-affected | code not present |
devel | not-affected | 4:3.2.0.1-1 |
gutsy | ignored | end of life, was needed |
hardy | not-affected | code not present |
intrepid | not-affected | code not present |
jaunty | released | 4:3.1.2-1ubuntu0.1 |
upstream | needs-triage |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 71%
0.00715
Низкий
7.5 High
CVSS2
Связанные уязвимости
nvd
около 16 лет назад
CRLF injection vulnerability in bs_disp_as_mime_type.php in the BLOB streaming feature in phpMyAdmin before 3.1.3.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the (1) c_type and possibly (2) file_type parameters.
debian
около 16 лет назад
CRLF injection vulnerability in bs_disp_as_mime_type.php in the BLOB s ...
EPSS
Процентиль: 71%
0.00715
Низкий
7.5 High
CVSS2