Hotels Styx through 1.0.0.beta8 allows HTTP response splitting due to CRLF Injection. This is exploitable if untrusted user input can appear in a response header.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-03-12T13:38:58
Updated: 2024-08-04T09:11:05.162Z
Reserved: 2020-01-13T00:00:00
Link: CVE-2020-6858
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-03-12T14:15:21.487
Modified: 2020-03-17T14:51:29.757
Link: CVE-2020-6858
Redhat
No data.