CRLF injection vulnerability in Akamai Download Manager ActiveX control prior to 2.2.3.6 allows remote malicious users to force the download and execution of arbitrary files via a URL parameter containing an encoded LF followed by a malicious target line.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
akamai download manager 2.2.1.0 |
||
akamai download manager |
||
akamai download manager 2.0.4.4 |
||
akamai download manager 2.2.0.0 |