First published: Wed Feb 19 2003(Updated: )
CRLF injection vulnerability in Lynx 2.8.4 and earlier allows remote attackers to inject false HTTP headers into an HTTP request that is provided on the command line, via a URL containing encoded carriage return, line feed, and other whitespace characters.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Elinks Elinks | =0.3.2 | |
University Of Kansas Lynx | =2.8.4 | |
University Of Kansas Lynx | =2.8.4_rel1 | |
University Of Kansas Lynx | =2.8.3 | |
University Of Kansas Lynx | =2.8.5_dev8 | |
University Of Kansas Lynx | =2.8.2_rel1 | |
Links Links | =0.96 | |
University Of Kansas Lynx | =2.8.3_rel1 | |
Elinks Elinks | =0.2.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.