First published: Fri Dec 02 2011(Updated: )
CRLF injection vulnerability in admin/displayImage.php in Prestashop 1.4.4.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the name parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Prestashop | =1.4.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2011-4545 is classified as high due to its potential for remote exploitation.
To fix CVE-2011-4545, upgrade to a patched version of Prestashop that addresses this vulnerability.
The potential impacts of CVE-2011-4545 include arbitrary HTTP header injection and HTTP response splitting attacks.
Prestashop version 1.4.4.1 is the affected version referenced in CVE-2011-4545.
Yes, CVE-2011-4545 can be exploited remotely by attackers through crafted HTTP requests.