5
CVSSv2

CVE-2007-3709

Published: 11/07/2007 Updated: 15/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

CRLF injection vulnerability in the redirect function in url_helper.php in CodeIgniter 1.5.3 allows remote malicious users to inject arbitrary HTTP headers via CRLF sequences in an unspecified parameter, as demonstrated by a Set-Cookie header.

Vulnerable Product Search on Vulmon Subscribe to Product

codeigniter codeigniter 1.5.3