ExpressionEngine HTTP Response Splitting and Cross Site Scripting Vulnerabilities

Bugtraq ID: 27128
Class: Input Validation Error
CVE: CVE-2008-0202
CVE-2008-0201
Remote: Yes
Local: No
Published: Jan 03 2008 12:00AM
Updated: Jul 05 2016 10:00PM
Credit: MustLive is credited with discovering these issues.
Vulnerable: EllisLab ExpressionEngine 1.2.1
Not Vulnerable: EllisLab ExpressionEngine 1.3.1


 

Privacy Statement
Copyright 2010, SecurityFocus