Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CRLF injection vulnerability in load.php in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5 allows remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the javaVersion parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM Proventia Network Mail Security System Local Management Interface 'load.php'CRLF注入漏洞
Vulnerability Description
Local Management Interface是基本帧中继规范的增强集。 包含固件的IBM Proventia Network Mail Security System (PNMSS)应用程序2.5.0.2之前版本中的Local Management Interface (LMI)中的load.php文件中存在CRLF注入漏洞。远程认证用户可以借助javaVersion参数注入任意HTTP头,并进行HTTP响应分裂攻击。
CVSS Information
N/A
Vulnerability Type
N/A