MEDIUM
CRLF injection vulnerability in Open-Xchange AppSuite before 7.2.2, when using AJP in certain conditions, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the ajax/defer servlet
Published Oct 3, 2013
4.3
MEDIUMCVSS 2.0
EPSS 0.96%
Description
Affected products
Remediation
References (2)
Change history (0)
No recorded changes yet.