CRLF injection vulnerability in the web framework in Cisco Web Security Appliance (WSA) 7.7 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct redirection attacks via a crafted URL, aka Bug ID CSCuj61002.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2014-04-02T01:00:00
Updated: 2024-08-06T10:05:59.526Z
Reserved: 2014-02-25T00:00:00
Link: CVE-2014-2137
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2014-04-02T03:58:17.123
Modified: 2014-04-02T16:28:44.673
Link: CVE-2014-2137
Redhat
No data.