5
CVSSv2

CVE-2004-1656

Published: 01/09/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

CRLF injection vulnerability in Comersus Shopping Cart 5.0991 allows remote malicious users to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the redirecturl parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

comersus open technologies comersus cart 5.0.991

Exploits

source: wwwsecurityfocuscom/bid/11083/info Comersus Cart is reported prone to a HTTP response splitting vulnerability A remote attacker may exploit this vulnerability to influence or misrepresent how web content is served, cached or interpreted This could aid in various attacks, which try to entice client users into a false sense of tru ...