CRLF injection vulnerability in Bitweaver 1.3 allows remote attackers to conduct HTTP response splitting attacks by via CRLF sequences in multiple unspecified parameters that are injected into HTTP headers, as demonstrated by the BWSESSION parameter in index.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2006-06-21T01:00:00

Updated: 2024-08-07T18:16:05.695Z

Reserved: 2006-06-20T00:00:00

Link: CVE-2006-3105

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2006-06-21T01:02:00.000

Modified: 2024-11-21T00:12:49.870

Link: CVE-2006-3105

cve-icon Redhat

No data.