Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CRLF injection vulnerability in Joomla! before 1.0.13 (aka Sunglow) allows remote attackers to inject arbitrary HTTP headers and probably conduct HTTP response splitting attacks via CRLF sequences in the url parameter. NOTE: this can be leveraged for cross-site scripting (XSS) attacks. NOTE: some of these details are obtained from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Joomla! 注入漏洞
Vulnerability Description
Joomla!是一套使用在Joomla!内容管理系统中的论坛组件。 Joomla! 1.0.13 (又称Sunglow)版本之前的版本中存在注入漏洞。远程攻击者可以借助url参数中的CRLF序列,注入任意HTTP页眉并可能执行HTTP响应分裂攻击。 注意:该漏洞可能会进一步扩展为跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A