CVE-2014-2137
02.04.2014, 03:58
CRLF injection vulnerability in the web framework in Cisco Web Security Appliance (WSA) 7.7 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct redirection attacks via a crafted URL, aka Bug ID CSCuj61002.Enginsight
Vendor | Product | Version |
---|---|---|
cisco | web_security_virtual_appliance | 𝑥 ≤ 7.7 |
cisco | web_security_virtual_appliance | 7.1.0 |
cisco | web_security_virtual_appliance | 7.1.1 |
cisco | web_security_virtual_appliance | 7.1.2 |
cisco | web_security_virtual_appliance | 7.1.3 |
cisco | web_security_virtual_appliance | 7.1.4 |
cisco | web_security_virtual_appliance | 7.5.0 |
cisco | web_security_virtual_appliance | 7.5.1 |
cisco | web_security_appliance | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration