HIGH
CRLF injection vulnerability in www/delivery/ck.php in Openads 2.3 (aka Max Media Manager, MMM) before 0.3.31-alpha-pr3 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the destination parameter
Published Apr 16, 2007
7.5
HIGHCVSS 2.0
EPSS 1.19%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.