Back to search
CVE-2005-3633
Published: Nov 16, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
HTTP response splitting vulnerability in frameset.htm in SAP Web Application Server (WAS) 6.10 through 7.00 allows remote attackers to inject arbitrary HTML headers via the sap-exiturl parameter.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20051109 CYBSEC - Security Advisory: HTTP Response Splitting in SAP WAS
mailing-list
x_refsource_BUGTRAQ
sap-sapexiturl-response-splitting(23030)
vdb-entry
x_refsource_XF
164
third-party-advisory
x_refsource_SREASON
20714
vdb-entry
x_refsource_OSVDB
17515
third-party-advisory
x_refsource_SECUNIA
1015174
vdb-entry
x_refsource_SECTRACK
ADV-2005-2361
vdb-entry
x_refsource_VUPEN
15360
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now