5
CVE-2005-3982
- EPSS 7.08%
- Veröffentlicht 04.12.2005 11:03:00
- Zuletzt bearbeitet 16.06.2026 22:18:00
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
CRLF injection vulnerability in layers_toggle.php in WebCalendar 1.0.1 might allow remote attackers to modify HTTP headers and conduct HTTP response splitting attacks via the ret parameter, which is used to redirect URL requests.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Webcalendar ≫ Webcalendar Version1.0.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 7.08% | 0.934 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:P/A:N
|
http://secunia.com/advisories/19240
http://www.debian.org/security/2006/dsa-1002
http://www.securityfocus.com/archive/1/418286/100/0/threaded
http://secunia.com/advisories/17848
http://vd.lwang.org/webcalendar_multiple_vulns.txt
http://www.osvdb.org/21383
http://www.securityfocus.com/bid/15673
http://www.vupen.com/english/advisories/2005/2702