CVE Vulnerabilities

CVE-2004-1687

Published: Sep 16, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

CRLF injection vulnerability in down.asp for Snitz Forums 2000 3.4.04 allows remote attackers to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the location parameter.

Affected Software

NameVendorStart VersionEnd Version
Snitz_forums_2000Snitz_communications3.0 (including)3.0 (including)
Snitz_forums_2000Snitz_communications3.1-sr4 (including)3.1-sr4 (including)
Snitz_forums_2000Snitz_communications3.3 (including)3.3 (including)
Snitz_forums_2000Snitz_communications3.3.01 (including)3.3.01 (including)
Snitz_forums_2000Snitz_communications3.3.02 (including)3.3.02 (including)
Snitz_forums_2000Snitz_communications3.3.03 (including)3.3.03 (including)
Snitz_forums_2000Snitz_communications3.4.02 (including)3.4.02 (including)
Snitz_forums_2000Snitz_communications3.4.03 (including)3.4.03 (including)
Snitz_forums_2000Snitz_communications3.4.04 (including)3.4.04 (including)

References