CVE-2008-6121
11.02.2009, 17:30
CRLF injection vulnerability in SocialEngine (SE) 2.7 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the PHPSESSID cookie.Enginsight
Vendor | Product | Version |
---|---|---|
socialengine | socialengine | 𝑥 ≤ 2.7 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References