5
CVSSv2

CVE-2007-2404

Published: 03/08/2007 Updated: 29/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

CRLF injection vulnerability in CFNetwork on Apple Mac OS X 10.3.9 and 10.4.10 prior to 20070731 allows remote malicious users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in an unspecified context. NOTE: this can be leveraged for cross-site scripting (XSS) attacks.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple mac os x 10.3.5

apple mac os x 10.3.6

apple mac os x 10.4.2

apple mac os x 10.4.3

apple mac os x server 10.3.1

apple mac os x server 10.3.2

apple mac os x server 10.3.9

apple mac os x server 10.4

apple mac os x server 10.4.6

apple mac os x server 10.4.7

apple mac os x 10.3.1

apple mac os x 10.3.2

apple mac os x 10.3.9

apple mac os x 10.4

apple mac os x 10.4.6

apple mac os x 10.4.7

apple mac os x server 10.3.5

apple mac os x server 10.3.6

apple mac os x server 10.4.2

apple mac os x server 10.4.3

apple mac os x 10.3.3

apple mac os x 10.3.4

apple mac os x 10.4.1

apple mac os x 10.4.10

apple mac os x 10.4.8

apple mac os x 10.4.9

apple mac os x server 10.3

apple mac os x server 10.3.7

apple mac os x server 10.3.8

apple mac os x server 10.4.4

apple mac os x server 10.4.5

apple mac os x 10.3

apple mac os x 10.3.7

apple mac os x 10.3.8

apple mac os x 10.4.4

apple mac os x 10.4.5

apple mac os x server 10.3.3

apple mac os x server 10.3.4

apple mac os x server 10.4.1

apple mac os x server 10.4.10

apple mac os x server 10.4.8

apple mac os x server 10.4.9