Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28345
HistoryDec 06, 2020 - 4:06 a.m.

CRLF Injection

2020-12-0604:06:32
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.003 Low

EPSS

Percentile

69.3%

wget is vulnerable to CRLF injection. The url_parse function in url.c allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in the host subcomponent of a URL.