CRLF injection vulnerability in Lynx 2.8.4 and earlier allows remote attackers to inject false HTTP headers into an HTTP request that is provided on the command line, via a URL containing encoded carriage return, line feed, and other whitespace characters.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2003-02-18 21:00
Updated : 2016-10-17 19:26
NVD link : CVE-2002-1405
Mitre link : CVE-2002-1405
JSON object : View
CWE
Products Affected
links
- links
university_of_kansas
- lynx
elinks
- elinks