|
|
| |
|
| |
perl-CGI-Simple: HTTP response splitting
| Package(s): | perl-CGI-Simple |
CVE #(s): | CVE-2010-4410
|
| Created: | January 28, 2011 |
Updated: | December 9, 2011 |
| Description: |
From the CVE entry:
CRLF injection vulnerability in the header function in (1) CGI.pm before 3.50 and (2) Simple.pm in CGI::Simple 1.112 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via vectors related to non-whitespace characters preceded by newline characters, a different vulnerability than CVE-2010-2761 and CVE-2010-3172. |
| Alerts: |
|
( Log in to post comments)
|
|
|