Логотип exploitDog
bind:CVE-2017-5868
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2017-5868

Количество 2

Количество 2

nvd логотип

CVE-2017-5868

больше 8 лет назад

CRLF injection vulnerability in the web interface in OpenVPN Access Server 2.1.4 allows remote attackers to inject arbitrary HTTP headers and consequently conduct session fixation attacks and possibly HTTP response splitting attacks via "%0A" characters in the PATH_INFO to __session_start__/.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-c9j2-xr8m-5hh8

больше 3 лет назад

CRLF injection vulnerability in the web interface in OpenVPN Access Server 2.1.4 allows remote attackers to inject arbitrary HTTP headers and consequently conduct session fixation attacks and possibly HTTP response splitting attacks via "%0A" characters in the PATH_INFO to __session_start__/.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2017-5868

CRLF injection vulnerability in the web interface in OpenVPN Access Server 2.1.4 allows remote attackers to inject arbitrary HTTP headers and consequently conduct session fixation attacks and possibly HTTP response splitting attacks via "%0A" characters in the PATH_INFO to __session_start__/.

CVSS3: 6.1
8%
Низкий
больше 8 лет назад
github логотип
GHSA-c9j2-xr8m-5hh8

CRLF injection vulnerability in the web interface in OpenVPN Access Server 2.1.4 allows remote attackers to inject arbitrary HTTP headers and consequently conduct session fixation attacks and possibly HTTP response splitting attacks via "%0A" characters in the PATH_INFO to __session_start__/.

CVSS3: 6.1
8%
Низкий
больше 3 лет назад

Уязвимостей на страницу