5
CVSSv2

CVE-2005-3633

Published: 16/11/2005 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

HTTP response splitting vulnerability in frameset.htm in SAP Web Application Server (WAS) 6.10 up to and including 7.00 allows remote malicious users to inject arbitrary HTML headers via the sap-exiturl parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

sap sap web application server 6.10

sap sap web application server 6.20

sap sap web application server 6.40

sap sap web application server 7.0