CRLF injection vulnerability in IBM WebSphere Application Server (WAS) before 6.0.2.19 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a single CRLF sequence in a context that is not a valid multi-line header.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2007-03-22T23:00:00
Updated: 2024-08-07T13:06:25.034Z
Reserved: 2007-03-22T00:00:00
Link: CVE-2007-1608

No data.

Status : Modified
Published: 2007-03-22T23:19:00.000
Modified: 2024-11-21T00:28:44.587
Link: CVE-2007-1608

No data.