CRLF injection vulnerability in the setUserValue function in sipssys/code/site.inc.php in Haakon Nilsen simple, integrated publishing system (SIPS) before 20020209 has unknown impact, possibly gaining privileges or modifying critical configuration, via a CRLF sequence in a key value.
References
Configurations
History
20 Nov 2024, 23:43
Type | Values Removed | Values Added |
---|---|---|
References | () http://sips.cvs.sourceforge.net/sips/sips/sipssys/code/site.inc.php?r1=1.13&r2=1.14 - | |
References | () http://sips.cvs.sourceforge.net/sips/sips/sipssys/code/site.inc.php?view=log - |
Information
Published : 2002-12-31 05:00
Updated : 2024-11-20 23:43
NVD link : CVE-2002-2218
Mitre link : CVE-2002-2218
CVE.ORG link : CVE-2002-2218
JSON object : View
Products Affected
sips
- sips
CWE