CRLF injection vulnerability in wp-login.php in WordPress 1.2 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the text parameter.
References
Configurations
History
20 Nov 2024, 23:51
Type | Values Removed | Values Added |
---|---|---|
References | () http://marc.info/?l=bugtraq&m=109716327724041&w=2 - | |
References | () http://secunia.com/advisories/12773 - Patch | |
References | () http://wordpress.org/development/2004/10/wp-121/ - Patch | |
References | () http://www.gentoo.org/security/en/glsa/glsa-200410-12.xml - Patch | |
References | () http://www.securityfocus.com/bid/11348 - Exploit, Patch | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/17649 - |
Information
Published : 2004-12-31 05:00
Updated : 2024-11-20 23:51
NVD link : CVE-2004-1584
Mitre link : CVE-2004-1584
CVE.ORG link : CVE-2004-1584
JSON object : View
Products Affected
wordpress
- wordpress
CWE