PT-2021-24303 · Unknown · Safari Montage

Published

2021-12-30

·

Updated

2023-01-20

·

CVE-2021-45818

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions: SAFARI Montage version 8.7.32
Description: The issue is related to a CRLF injection vulnerability, which can lead to HTTP response splitting. This allows an attacker to inject malicious data into the HTTP response, potentially leading to various security issues.
Recommendations: For SAFARI Montage version 8.7.32, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2021-45818

Affected Products

Safari Montage