PT-2007-2990 · Ibm · Ibm Websphere Application Server

Publicado

2007-03-22

·

Atualizado

2017-07-29

·

CVE-2007-1608

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions IBM WebSphere Application Server versions prior to 6.0.2.19
Description A CRLF injection issue allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a single CRLF sequence in a context that is not a valid multi-line header.
Recommendations For versions prior to 6.0.2.19, update to version 6.0.2.19 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-1608

Produtos afetados

Ibm Websphere Application Server