High
CVSS 7.6
Overview
CRLF injection vulnerability in viewcvs in ViewCVS 0.9.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the content-type parameter.
CRLF injection vulnerability in viewcvs in ViewCVS 0.9.2 allows remote attackers...
CRLF injection vulnerability in viewcvs in ViewCVS 0.9.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via CRLF sequences in the content-type parameter.
This vulnerability is rated 🟠 HIGH.
Recommended actions: