CRLF injection vulnerability in autologin.jsp in Cisco CiscoWorks Common Services 4.0, as used in Cisco Prime LAN Management Solution and other products, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the URL parameter, aka Bug ID CSCtu18693.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2012-05-03T10:00:00
Updated: 2024-08-07T00:01:51.509Z
Reserved: 2011-11-01T00:00:00
Link: CVE-2011-4237
Vulnrichment
No data.
NVD
Status : Modified
Published: 2012-05-03T10:11:39.827
Modified: 2012-06-09T03:38:09.323
Link: CVE-2011-4237
Redhat
No data.