First published: Sat Jul 02 2016(Updated: )
CRLF injection vulnerability in IBM WebSphere eXtreme Scale 7.1.0 before 7.1.0.3, 7.1.1 before 7.1.1.1, 8.5 before 8.5.0.3, and 8.6 before 8.6.0.8 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM WebSphere eXtreme Scale | =7.1.0 | |
IBM WebSphere eXtreme Scale | =7.1.0.2 | |
IBM WebSphere eXtreme Scale | =7.1.1 | |
IBM WebSphere eXtreme Scale | =8.5.0 | |
IBM WebSphere eXtreme Scale | =8.5.0.1 | |
IBM WebSphere eXtreme Scale | =8.5.0.2 | |
IBM WebSphere eXtreme Scale | =8.6.0.0 | |
IBM WebSphere eXtreme Scale | =8.6.0.1 | |
IBM WebSphere eXtreme Scale | =8.6.0.2 | |
IBM WebSphere eXtreme Scale | =8.6.0.3 | |
IBM WebSphere eXtreme Scale | =8.6.0.4 | |
IBM WebSphere eXtreme Scale | =8.6.0.5 | |
IBM WebSphere eXtreme Scale | =8.6.0.6 | |
IBM WebSphere eXtreme Scale | =8.6.0.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.