Lucene search

K
cveMitreCVE-2005-3791
HistoryNov 24, 2005 - 11:03 a.m.

CVE-2005-3791

2005-11-2411:03:00
mitre
web.nvd.nist.gov
33
cve-2005-3791
php
http response splitting
vulnerability
remote attackers
html headers
adclick.php
phpadsnew
phppgads

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

AI Score

7.1

Confidence

Low

EPSS

0.003

Percentile

70.5%

HTTP response splitting vulnerability in phpAdsNew and phpPgAds 2.0.6 and earlier allows remote attackers to inject arbitrary HTML headers via adclick.php and possibly other unspecified vectors.

Affected configurations

Nvd
Node
phpadsnewphpadsnewRange2.0.6
OR
phppgadsphppgadsRange2.0.6
VendorProductVersionCPE
phpadsnewphpadsnew*cpe:2.3:a:phpadsnew:phpadsnew:*:*:*:*:*:*:*:*
phppgadsphppgads*cpe:2.3:a:phppgads:phppgads:*:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

AI Score

7.1

Confidence

Low

EPSS

0.003

Percentile

70.5%

Related for CVE-2005-3791