CVE-2008-6121
11.02.2009, 17:30
CRLF injection vulnerability in SocialEngine (SE) 2.7 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the PHPSESSID cookie.Enginsight
| Vendor | Product | Version |
|---|---|---|
| socialengine | socialengine | 𝑥 ≤ 2.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References