HTTP response splitting vulnerability in language_select.asp in ASP Nuke 0.80 allows remote attackers to spoof web content and poison web caches via CRLF ("%0d%0a") sequences in the LangCode parameter.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=111989223906484&w=2 | mailing list |
http://www.securityfocus.com/bid/14063 | vdb entry |