ZeroHour

CVE-2016-6484

CVSS 3.0
6.1 medium
EPSS
2%p78
Published
()
Modified
Description

CRLF injection vulnerability in Infoblox Network Automation NetMRI before 7.1.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the contentType parameter in a login action to config/userAdmin/login.tdf.

Vendors
infoblox
Products
netmri
Weakness
CWE-93
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.