5
CVSSv2

CVE-2004-1507

Published: 31/12/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

CRLF injection vulnerability in login.php in WebCalendar allows remote malicious users to inject CRLF sequences via the return_path parameter and perform HTTP Response Splitting attacks to modify expected HTML content from the server.

Vulnerable Product Search on Vulmon Subscribe to Product

webcalendar webcalendar 0.9.21

webcalendar webcalendar 0.9.22

webcalendar webcalendar 0.9.30

webcalendar webcalendar 0.9.31

webcalendar webcalendar 0.9.38

webcalendar webcalendar 0.9.39

webcalendar webcalendar 0.9.11

webcalendar webcalendar 0.9.23

webcalendar webcalendar 0.9.24

webcalendar webcalendar 0.9.25

webcalendar webcalendar 0.9.32

webcalendar webcalendar 0.9.33

webcalendar webcalendar 0.9.40

webcalendar webcalendar 0.9.41

webcalendar webcalendar 0.9.15

webcalendar webcalendar 0.9.16

webcalendar webcalendar 0.9.26

webcalendar webcalendar 0.9.27

webcalendar webcalendar 0.9.34

webcalendar webcalendar 0.9.35

webcalendar webcalendar 0.9.42

webcalendar webcalendar 0.9.43

webcalendar webcalendar 0.9.19

webcalendar webcalendar 0.9.20

webcalendar webcalendar 0.9.28

webcalendar webcalendar 0.9.29

webcalendar webcalendar 0.9.36

webcalendar webcalendar 0.9.37

webcalendar webcalendar 0.9.44

webcalendar webcalendar 0.9.8