CVE Vulnerabilities

CVE-2005-3982

Published: Dec 04, 2005 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

CRLF injection vulnerability in layers_toggle.php in WebCalendar 1.0.1 might allow remote attackers to modify HTTP headers and conduct HTTP response splitting attacks via the ret parameter, which is used to redirect URL requests.

Affected Software

Name Vendor Start Version End Version
Webcalendar Webcalendar 1.0.1 (including) 1.0.1 (including)
Webcalendar Ubuntu dapper *
Webcalendar Ubuntu devel *
Webcalendar Ubuntu edgy *

References