Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-2732

Опубликовано: 05 дек. 2012
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3

Описание

CRLF injection vulnerability in the logout functionality in VMware SpringSource Spring Security before 2.0.7 and 3.0.x before 3.0.6 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the spring-security-redirect parameter.

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
hardy

DNE

lucid

DNE

oneiric

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was needed
quantal

not-affected

2.0.7.RELEASE-1
raring

not-affected

saucy

not-affected

Показывать по

4.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 14 лет назад

CRLF injection vulnerability in the logout functionality in VMware SpringSource Spring Security before 2.0.7 and 3.0.x before 3.0.6 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the spring-security-redirect parameter.

nvd
около 13 лет назад

CRLF injection vulnerability in the logout functionality in VMware SpringSource Spring Security before 2.0.7 and 3.0.x before 3.0.6 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the spring-security-redirect parameter.

debian
около 13 лет назад

CRLF injection vulnerability in the logout functionality in VMware Spr ...

github
больше 3 лет назад

Improper Control of Generation of Code in Spring Security

4.3 Medium

CVSS2