HTTP Response Splitting vulnerability in the Surveys module in PHP-Nuke 7.6 allows remote attackers to spoof web content and poison web caches via hex-encoded CRLF (%0d%0a) sequences in the forwarder parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Php-nuke | Francisco_burzi | * | 7.5 (including) |
Php-nuke | Francisco_burzi | 7.6 (including) | 7.6 (including) |