Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CRLF injection vulnerability in layers_toggle.php in WebCalendar 1.0.1 might allow remote attackers to modify HTTP headers and conduct HTTP response splitting attacks via the ret parameter, which is used to redirect URL requests.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
WebCalendar Layers_Toggle.PHP HTTP 响应拆分漏洞
Vulnerability Description
WebCalendar 1.0.1的layers_toggle.php中存在CRLF注入漏洞。远程攻击者可以通过可重定向URL请求的ret参数,修改HTTP header并进行HTTP响应拆分攻击。
CVSS Information
N/A
Vulnerability Type
N/A