Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
CRLF injection vulnerability in the Web Application Enterprise Console in IBM InfoSphere BigInsights 1.1 and 2.x before 2.1 FP2 allows remote authenticated users to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vectors.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IBM InfoSphere BigInsights CRLF注入漏洞
Vulnerability Description
IBM InfoSphere BigInsights是美国IBM公司的一套用于储存和分析 “大数据” 的软件平台。该平台为管理和分析海量的结构化和非结构化数据提供了解决方案。 IBM InfoSphere BigInsights 1.1至1.4版本和2.0至2.1版本中的Web Application Enterprise Console中存在CRLF注入漏洞。远程攻击者可利用该漏洞注入任意HTTP头,实施HTTP响应拆分攻击。
CVSS Information
N/A
Vulnerability Type
N/A