CVE-2008-1770
04.06.2008, 21:32
CRLF injection vulnerability in Akamai Download Manager ActiveX control before 2.2.3.6 allows remote attackers to force the download and execution of arbitrary files via a URL parameter containing an encoded LF followed by a malicious target line.
Vendor | Product | Version |
---|---|---|
akamai | download_manager | 𝑥 ≤ 2.2.3.5 |
akamai | download_manager | 2.0.4.4 |
akamai | download_manager | 2.2.0.0 |
akamai | download_manager | 2.2.1.0 |
𝑥
= Vulnerable software versions
References