Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 9

Количество 9

github логотип

GHSA-crcg-r773-w4rv

больше 4 лет назад

Possible CRLF injection allowing HTTP response splitting attacks for sites which use mod_userdir. This issue was mitigated by changes made in 2.4.25 and 2.2.32 which prohibit CR or LF injection into the "Location" or other outbound header key or value. Fixed in Apache HTTP Server 2.4.25 (Affected 2.4.1-2.4.23). Fixed in Apache HTTP Server 2.2.32 (Affected 2.2.0-2.2.31).

CVSS3: 6.1
EPSS: Средний
ubuntu логотип

CVE-2016-4975

около 8 лет назад

Possible CRLF injection allowing HTTP response splitting attacks for sites which use mod_userdir. This issue was mitigated by changes made in 2.4.25 and 2.2.32 which prohibit CR or LF injection into the "Location" or other outbound header key or value. Fixed in Apache HTTP Server 2.4.25 (Affected 2.4.1-2.4.23). Fixed in Apache HTTP Server 2.2.32 (Affected 2.2.0-2.2.31).

CVSS3: 6.1
EPSS: Средний
redhat логотип

CVE-2016-4975

около 8 лет назад

Possible CRLF injection allowing HTTP response splitting attacks for sites which use mod_userdir. This issue was mitigated by changes made in 2.4.25 and 2.2.32 which prohibit CR or LF injection into the "Location" or other outbound header key or value. Fixed in Apache HTTP Server 2.4.25 (Affected 2.4.1-2.4.23). Fixed in Apache HTTP Server 2.2.32 (Affected 2.2.0-2.2.31).

CVSS3: 3.7
EPSS: Средний
nvd логотип

CVE-2016-4975

около 8 лет назад

Possible CRLF injection allowing HTTP response splitting attacks for sites which use mod_userdir. This issue was mitigated by changes made in 2.4.25 and 2.2.32 which prohibit CR or LF injection into the "Location" or other outbound header key or value. Fixed in Apache HTTP Server 2.4.25 (Affected 2.4.1-2.4.23). Fixed in Apache HTTP Server 2.2.32 (Affected 2.2.0-2.2.31).

CVSS3: 6.1
EPSS: Средний
debian логотип

CVE-2016-4975

около 8 лет назад

Possible CRLF injection allowing HTTP response splitting attacks for s ...

CVSS3: 6.1
EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2018:2856-1

почти 8 лет назад

Security update for apache2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2815-2

почти 8 лет назад

Security update for apache2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2815-1

почти 8 лет назад

Security update for apache2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2554-1

почти 8 лет назад

Security update for apache2

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-crcg-r773-w4rv

Possible CRLF injection allowing HTTP response splitting attacks for sites which use mod_userdir. This issue was mitigated by changes made in 2.4.25 and 2.2.32 which prohibit CR or LF injection into the "Location" or other outbound header key or value. Fixed in Apache HTTP Server 2.4.25 (Affected 2.4.1-2.4.23). Fixed in Apache HTTP Server 2.2.32 (Affected 2.2.0-2.2.31).

CVSS3: 6.1
20%
Средний
больше 4 лет назад
ubuntu логотип
CVE-2016-4975

Possible CRLF injection allowing HTTP response splitting attacks for sites which use mod_userdir. This issue was mitigated by changes made in 2.4.25 and 2.2.32 which prohibit CR or LF injection into the "Location" or other outbound header key or value. Fixed in Apache HTTP Server 2.4.25 (Affected 2.4.1-2.4.23). Fixed in Apache HTTP Server 2.2.32 (Affected 2.2.0-2.2.31).

CVSS3: 6.1
20%
Средний
около 8 лет назад
redhat логотип
CVE-2016-4975

Possible CRLF injection allowing HTTP response splitting attacks for sites which use mod_userdir. This issue was mitigated by changes made in 2.4.25 and 2.2.32 which prohibit CR or LF injection into the "Location" or other outbound header key or value. Fixed in Apache HTTP Server 2.4.25 (Affected 2.4.1-2.4.23). Fixed in Apache HTTP Server 2.2.32 (Affected 2.2.0-2.2.31).

CVSS3: 3.7
20%
Средний
около 8 лет назад
nvd логотип
CVE-2016-4975

Possible CRLF injection allowing HTTP response splitting attacks for sites which use mod_userdir. This issue was mitigated by changes made in 2.4.25 and 2.2.32 which prohibit CR or LF injection into the "Location" or other outbound header key or value. Fixed in Apache HTTP Server 2.4.25 (Affected 2.4.1-2.4.23). Fixed in Apache HTTP Server 2.2.32 (Affected 2.2.0-2.2.31).

CVSS3: 6.1
20%
Средний
около 8 лет назад
debian логотип
CVE-2016-4975

Possible CRLF injection allowing HTTP response splitting attacks for s ...

CVSS3: 6.1
20%
Средний
около 8 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2856-1

Security update for apache2

почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:2815-2

Security update for apache2

почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:2815-1

Security update for apache2

почти 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:2554-1

Security update for apache2

почти 8 лет назад

Уязвимостей на страницу