5
CVSSv2

CVE-2005-2065

Published: 29/06/2005 Updated: 18/10/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote malicious users to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the LangCode parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

asp-nuke asp-nuke 0.80

Exploits

source: wwwsecurityfocuscom/bid/14063/info ASPNuke is prone to an HTTP response splitting vulnerability This issue is due to a failure in the application to properly sanitize user-supplied input A remote attacker may exploit this vulnerability to influence or misrepresent how Web content is served, cached or interpreted This could aid ...